EN ES PT
Back to Stats

Visual Capture

Screenshot of rajveer004.github.io

Detection Info

https://rajveer004.github.io/netflix-clone/
Detected Brand
Netflix
Country
International
Confidence
100%
HTTP Status
200
Report ID
79d1f933-17c…
Analyzed
2026-03-17 17:17

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AA72A7709081257F018383D9B730AF59B1E6C286C76B1B49B2F5A36E7BC6D168D922DC
CONTENT ssdeep
384:ntf0YzLO06fe0OUOrQjJreWn6f99tf1Pg:nHWe0OUOrQjJq99ti

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
93ec926c73932c93
VISUAL aHash
c7ff3f2c00002c2c
VISUAL dHash
0f2d72d85216c8c8
VISUAL wHash
c7ff3f7e00006c2c
VISUAL colorHash
31400010000
VISUAL cropResistant
fcfcfcbcfcfcf8b1,0f2d72d85216c8c8

Code Analysis

Risk Score 65/100
Threat Level ALTO
āš ļø Phishing Confirmed
šŸŽ£ Credential Harvester šŸŽ£ Personal Info

šŸ”¬ Threat Analysis Report

• Threat: Phishing
• Target: Netflix users
• Method: Impersonation via free hosting and fake login form.
• Exfil: Email address
• Indicators: Free hosting, brand logo, form fields.
• Risk: HIGH

šŸ“Š Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Free Hosting with Brand Impersonation
The site uses free hosting (rajveer004.github.io) and displays the Netflix brand logo, directly violating the criteria.
Form for data entry
The form asks for email which is often a preliminary step for phishing attacks

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Credential Harvesting Kit
Target
Netflix users (International)
Attack Method
Brand impersonation + credential harvesting forms
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

āš ļø Indicators of Compromise

  • Kit types: Credential Harvester, Personal Info

šŸ¢ Brand Impersonation Analysis

Impersonated Brand
Netflix
Official Website
https://www.netflix.com/
Fake Service
Netflix Website

Fraudulent Claims

āš”ļø Attack Methodology

Primary Method: Credential Harvesting

The attacker aims to steal user credentials (in this case, email) by creating a fake login page that mimics the legitimate service. Users are tricked into entering their information, which the attacker then collects.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
rajveer004.github.io
Registered
None
Registrar
None
Status
None

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.