EN ES PT
Back to Stats

Visual Capture

Screenshot of www.onlineservicetec.com

Detection Info

https://www.onlineservicetec.com/landingpages/fe996bbf-3dce-487c-acd3-4a69200fa8a0/xhugh3mwqo61t8ihirdumoahrrh_munv2zn3bsal8aq
Detected Brand
Microsoft
Country
International
Confidence
95%
HTTP Status
200
Report ID
c5518fc4-bdd…
Analyzed
2026-01-05 13:03

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T128614F306460256713470EED79F5BB0E35ABC30ECA4310142AAC93E51BF7EF5EC0A2A9
CONTENT ssdeep
96:nqZe1f9UgqJke4Nbt6lS4I0sjM+3ZugnGM:Ke1qmNYlSuyv7x

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
999ae7e34c4e1817
VISUAL aHash
ffff3e1818180000
VISUAL dHash
f0f8f0b2b2b1c8b2
VISUAL wHash
ffffff1c18180800
VISUAL colorHash
1bc00010000
VISUAL cropResistant
e0f070e0c4e4e0e5,f0f8f0b2b2b1c8b2

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester

🔬 Threat Analysis Report

• Threat: Credential harvesting phishing attack.
• Target: Microsoft users.
• Method: Fake Microsoft login page used to steal usernames and passwords.
• Exfil: Data is likely exfiltrated via the form action to a server controlled by the attacker.
• Indicators: The domain name does not match the official Microsoft domain, a login form is present, and JavaScript form submission is detected.
• Risk: HIGH - Immediate credential theft.

🔐 Credential Harvesting Forms

📤 Form Action Targets

  • /landingpages/0952038f-a65c-41e7-881d-97e1418c81b7/xhugh3mwqo61t8ihirdumoahrrh_munv2zn3bsal8aq
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.