EN ES PT
Back to Stats

Visual Capture

Screenshot of www.netflix-clone-alpha-nine.vercel.app

Detection Info

https://www.netflix-clone-alpha-nine.vercel.app/
Detected Brand
Netflix
Country
International
Confidence
95%
HTTP Status
200
Report ID
7ed7d709-371…
Analyzed
2026-02-03 23:43
Final URL (after redirects)
https://netflix-clone-alpha-nine.vercel.app/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T16EF133366640697705D382E97B766B1F33D3C182CB032B9926F9C34D8FE6E45CD22286
CONTENT ssdeep
96:nPQFbhfX8VKnXq9mcs1F2taDjj28GNi35fXMrHqY3cQF9:oFbJQKa9mcsbPj28Si3hcLf3hF9

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
96cd3670c38f3934
VISUAL aHash
20181b7d78000626
VISUAL dHash
6d72b2f0d5974ccc
VISUAL wHash
b5bc1f7fe3000626
VISUAL colorHash
39601008000
VISUAL cropResistant
100000d0d0000040,6d72b2f0d5974ccc

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester

🔬 Threat Analysis Report

• Threat: Phishing
• Target: Netflix users
• Method: Impersonation to steal credentials
• Exfil: Unknown, likely to a database
• Indicators: Free hosting, brand logo on suspicious domain, email form.
• Risk: High

📊 Risk Score Breakdown

Total Risk Score
95/100

Contributing Factors

Free Hosting + Brand Logo
The site uses a free hosting service with a Netflix logo, which is a strong indicator of phishing.
Form for credentials
The form is designed to steal the email of the user.

🔬 Comprehensive Threat Analysis

Threat Type
Credential Harvesting Kit
Target
Netflix users (International)
Attack Method
Brand impersonation
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester

🏢 Brand Impersonation Analysis

Impersonated Brand
Netflix
Official Website
https://www.netflix.com
Fake Service
Netflix

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Credential Harvesting

The attacker creates a convincing replica of the Netflix website to trick users into entering their login credentials.

Secondary Method: Social Engineering

The attacker uses the Netflix branding to create a sense of trust and legitimacy, persuading users to provide their information.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
www.netflix-clone-alpha-nine.vercel.app
Registered
None
Registrar
None
Status
None

🤖 AI-Extracted Threat Intelligence

Scan History for www.netflix-clone-alpha-nine.vercel.app

Found 1 other scan for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.