EN ES PT
Back to Stats

Visual Capture

Screenshot of dpln-guides.com

Detection Info

https://dpln-guides.com
Detected Brand
Unknown
Country
International
Confidence
95%
HTTP Status
200
Report ID
b12f0946-277…
Analyzed
2026-03-16 19:51
Final URL (after redirects)
https://dpln-guides.com/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AE537472E1C7A47B4627C1CDEAA2EF6771E1C18CC6530A4163F8865D1ADECE0F513A98
CONTENT ssdeep
1536:S2m+n8sjDqzR5CtcTnRID0xlKe6hWqmsMd:S2m+n8sjA8ynY0xehGsMd

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cd4db232cd49b31c
VISUAL aHash
00000018000000ff
VISUAL dHash
004cf070300c1000
VISUAL wHash
00007e7e1810ffff
VISUAL colorHash
010000001c0
VISUAL cropResistant
0180804141414141,d6b3a91669696179,4125a28c33b2b2b2,0000000000000000,000470f070320800

Code Analysis

Risk Score 30/100
Threat Level ALTO
⚠️ Phishing Confirmed

🔬 Threat Analysis Report

• Threat: Phishing
• Target: Unsuspecting users
• Method: Deception, lure users to submit data
• Exfil: https://www.Quete anomalie des Khrandorvideo.com/recherche.php
• Indicators: Unusual domain, form pointing to suspicious URL, generic content
• Risk: High

🔐 Credential Harvesting Forms

🎯 Kit Endpoints

  • https://www.Quete anomalie des Khrandorvideo.com/login?url=https%3A%2F%2Fwww.Quete anomalie des Khrandorvideo.com%2FQuete anomalie des Khrandor%2FQuete anomalie des Khrandor dofus%2F00013232-dofus.htm&hash=6fcc0a9a9fce841d2e65551e5a375b83

📤 Form Action Targets

  • https://www.Quete anomalie des Khrandorvideo.com/recherche.php

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Suspicious Domain
Domain name does not relate to the content.
Form pointing to suspicious destination
Form submission goes to a domain which is not directly connected to main domain.
Generic Content
The content displayed on the site is vague and does not provide enough context.

🔬 Comprehensive Threat Analysis

Threat Type
Unknown Threat
Target
General public
Attack Method
credential harvesting forms
Exfiltration Channel
HTTP POST to backend
Risk Assessment
LOW - Automated credential harvesting with HTTP POST to backend

🏢 Brand Impersonation Analysis

Impersonated Brand
Unknown
Fake Service
Unknown

⚔️ Attack Methodology

Primary Method: Credential Harvesting

The attacker aims to collect sensitive information through a form hosted on a deceptive website. The form will likely redirect the data to a malicious server.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
dpln-guides.com
Registered
None
Registrar
None
Status
None

🤖 AI-Extracted Threat Intelligence

Scan History for dpln-guides.com

Found 1 other scan for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.