EN ES PT
Back to Stats

Visual Capture

Screenshot of krish88-dev.github.io

Detection Info

http://krish88-dev.github.io/netflix-clone
Detected Brand
Netflix
Country
International
Confidence
95%
HTTP Status
200
Report ID
f0134915-c4a…
Analyzed
2026-02-19 23:35
Final URL (after redirects)
https://krish88-dev.github.io/netflix-clone/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T130C11C3A3101693B018382F6EB699B4BF7838559DF9B0B6520F8D34D6FE6D49CC52688
CONTENT ssdeep
96:nzkO9d+Ff2M1rxH5X1nFBFEW+ht3wj2C+Ff2zzKjam:zkO9dgR1xH5FFB9+8j2CgUG

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
84ac63723cad3337
VISUAL aHash
00767f5b96441020
VISUAL dHash
0fa4b6b2a48c68cc
VISUAL wHash
007e7fdf0674146c
VISUAL colorHash
39401000000
VISUAL cropResistant
0000c03232900000,0fa4b6b2a48c68cc

Code Analysis

Threat Level ALTO
⚠️ Phishing Confirmed

🔬 Threat Analysis Report

• Threat: Phishing
• Target: Netflix users
• Method: Impersonation through a fake login page on free hosting
• Exfil: Email address
• Indicators: Free hosting, Netflix logo, form
• Risk: High

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Free Hosting
The domain uses free hosting, which is a major red flag for phishing.
Impersonation
The website closely imitates the Netflix website.
Form on Landing Page
The presence of a form to collect email increases the phishing risk.

🔬 Comprehensive Threat Analysis

Threat Type
Netflix Phishing Landing Page
Target
Netflix users (International)
Attack Method
Brand impersonation
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
LOW - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

🏢 Brand Impersonation Analysis

Impersonated Brand
Netflix
Official Website
https://www.netflix.com/
Fake Service
Netflix streaming service

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Credential Harvesting

The attacker aims to steal user credentials by mimicking the Netflix website and prompting users to enter their email addresses.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
krish88-dev.github.io
Registered
N/A
Registrar
N/A
Status
Active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.