EN ES PT
Back to Stats

Visual Capture

Screenshot of admin-ods.insolvency-development.co.uk

Detection Info

https://admin-ods.insolvency-development.co.uk/Account/Login?ReturnUrl=%2F
Detected Brand
GOV.UK
Country
UK
Confidence
100%
HTTP Status
200
Report ID
f44a677a-3c5…
Analyzed
2025-12-31 21:41

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1F0D19335A4199D3A0713EBC4F3A2637AD293C24DC7560D05D5FC46AE0BEAE95C89A323
CONTENT ssdeep
96:Ws0lGTGiSGvRGmGmIKWGlHtCrFzbX2BRGxR6EkofXPFssQvsZC0myJ:WsysnS6RfRWKHSofMR6EkNfa

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
bc34636167366963
VISUAL aHash
00ffffff0000ffff
VISUAL dHash
1e003020223a0400
VISUAL wHash
00ffdfdf0000c0ff
VISUAL colorHash
070000003c0
VISUAL cropResistant
3a203228323a0c00,403048484a489616

Code Analysis

Risk Score 78/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: Credential harvesting phishing
• Target: Users of UK Government services
• Method: Fake login form stealing username and password
• Exfil: Data sent to unknown location (form action /Account/Login?ReturnUrl=%2F)
• Indicators: Domain mismatch, older domain but possibly compromised, obfuscated JS
• Risk: HIGH - Potential credential theft affecting government services

🔐 Credential Harvesting Forms

🔒 Obfuscation Detected

  • fromCharCode

🎯 Kit Endpoints

  • /Account/Login?ReturnUrl=%2F

📤 Form Action Targets

  • /Account/Login?ReturnUrl=%2F
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.