EN ES PT
Back to Stats

Visual Capture

No screenshot available

Detection Info

https://www.mercadolibre.com.uy/gz/account-verification?go=https%3A%2F%2Flistado.mercadolibre.com.uy%2Ftabaco-pipa&tid=ebbe88c8-e153-4706-a07a-f94de746c450
Detected Brand
Mercado Libre
Country
Uruguay
Confidence
100%
HTTP Status
200
Report ID
eb6dcf70-fef…
Analyzed
2026-01-01 05:18

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T18DA122F23498543B27F386DAF0A2A75C70CA5159C442A409C29517FD0BD5EE5DDCA32B
CONTENT ssdeep
96:dIVlJxpVi9qb1GmcoGkGcGBavG61GEOG0K1GY4tVM1GYgvfE1TC+/Jr12C+Vra5w:+V129s1GmVGkGcGO1GEOGN1GY4ti1GYI

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
f326390cd986f326
VISUAL aHash
000000ffffffffff
VISUAL dHash
8c2849320c10041b
VISUAL wHash
000000dffcfce1ff
VISUAL colorHash
07e00000000
VISUAL cropResistant
8c2849320c10041b

Code Analysis

Risk Score 86/100
Threat Level BAJO
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: Potential account takeover if credentials are compromised.
• Target: Mercado Libre users in Uruguay
• Method: Login prompt, not a form, appears on a legitimate Mercado Libre page.
• Exfil: N/A - Legitimate login page.
• Indicators: Official domain, Mercado Libre branding
• Risk: LOW - Standard login page, but always potential risk of compromised credentials.

🔒 Obfuscation Detected

  • atob
  • base64_strings

🎯 Kit Endpoints

  • https://www.mercadolibre.com/jms/mlu/lgz/login?platform_id=ml&go=https://listado.mercadolibre.com.uy/tabaco-pipa&loginType=negative_traffic

📡 API Calls Detected

  • POST
  • PUT
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.