EN ES PT
Back to Stats

Visual Capture

Screenshot of 3659uuu.cc

Detection Info

https://3659uuu.cc
Detected Brand
Unknown (Sports Betting/Gambling)
Country
International
Confidence
100%
HTTP Status
200
Report ID
9132b784-648…
Analyzed
2026-03-17 03:19
Final URL (after redirects)
https://3659uuu.cc/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T17831AC31C4C48CAF0692C7E8CA36761BF2C6835CD7136A0585F947AE2B49E66CC47C85
CONTENT ssdeep
24:hPCcHIdT/u4F0lC9HXHJbqirHXHJaVI62DQCa5PUR/2DQJY92t6dT:hHgu4F0lIb31aVI66Qc6QJSHdT

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
8dad624a3c879d8d
VISUAL aHash
10183e1a18183800
VISUAL dHash
a1f2f23232f0f0cc
VISUAL wHash
187e3f3f187c7c00
VISUAL colorHash
39600008001
VISUAL cropResistant
8c96968eaaaa869e,a1f2f23232f0f0cc

Code Analysis

Risk Score 77/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 Personal Info

πŸ”¬ Threat Analysis Report

β€’ Threat: Brand Impersonation
β€’ Target: Gambling services user
β€’ Method: Unclear, potential credential harvesting.
β€’ Exfil: Unknown
β€’ Indicators: Domain age, Javascript obfuscation, brand logo
β€’ Risk: High

πŸ”’ Obfuscation Detected

  • eval
  • unescape
  • hex_escape
  • unicode_escape

πŸ“‘ API Calls Detected

  • POST

πŸ“Š Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Recent Domain
The domain is very new (4 days old), which is a common indicator of phishing.
Obfuscated Javascript
Javascript is obfuscated (eval, unescape, hex_escape), which hides malicious code.
Brand Impersonation
The site appears to be impersonating a gambling platform.

πŸ”¬ Comprehensive Threat Analysis

Threat Type
Credential Harvesting Kit
Target
Unknown (Sports Betting/Gambling) users (International)
Attack Method
Brand impersonation + obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, Personal Info
  • 36 obfuscation techniques

🏒 Brand Impersonation Analysis

Impersonated Brand
Gambling website/service
Fake Service
Gambling portal

Fraudulent Claims

βš”οΈ Attack Methodology

Primary Method: Brand Impersonation

The site mimics a gambling portal, likely with a login form to steal credentials.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
3659uuu.cc
Registered
2024-03-06
Registrar
NameCheap
Status
ACTIVE

πŸ€– AI-Extracted Threat Intelligence

Scan History for 3659uuu.cc

Found 2 other scans for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.