EN ES PT
Back to Stats

Visual Capture

Screenshot of www.onlineservicetec.com

Detection Info

https://www.onlineservicetec.com/landingpages/214dde44-d83d-472c-808d-4304cf3e308c/17pudphlyyfxfpwfexcblgtfazjdkjjv8tw1ghidx4s
Detected Brand
FedEx
Country
International
Confidence
95%
HTTP Status
200
Report ID
9d47928b-102…
Analyzed
2026-01-05 13:00

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1C03230B0625A18D70B9AC97CBE20B79DA2E7C453F2255C64A3BCD2522DD1C081EB11BF
CONTENT ssdeep
192:ReE7/6XK6p7W26gC6CPUyTGiv9slq5I/Juq:Rea/6XrZW2FC6CPBaiv9slq2/Juq

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
ed6d6d9292929293
VISUAL aHash
c3c3c3ffffffffff
VISUAL dHash
1696962912480000
VISUAL wHash
c3c3c3dfff4e0000
VISUAL colorHash
07000600010
VISUAL cropResistant
1696962912480000,202c20a026080020

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester

🔬 Threat Analysis Report

• Threat: FedEx credential harvesting phishing
• Target: FedEx customers
• Method: Fake FedEx login page to steal User ID and password
• Exfil: Likely to a custom API or database controlled by attackers. Form action points to '/landingpages/ac5c9c07-fe9d-4dc8-9780-8ff30d1206d7/17pudphlyyfxfpwfexcblgtfazjdkjjv8tw1ghidx4s'
• Indicators: Domain mismatch, form submission with Javascript, multiple forms detected, non-SSL connection (inferred)
• Risk: HIGH - Immediate credential theft

🔐 Credential Harvesting Forms

📤 Form Action Targets

  • /landingpages/ac5c9c07-fe9d-4dc8-9780-8ff30d1206d7/17pudphlyyfxfpwfexcblgtfazjdkjjv8tw1ghidx4s
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.