EN ES PT
Back to Stats

Visual Capture

Screenshot of secret-flirts.com

Detection Info

https://secret-flirts.com/fe921lry.php?key=m5r9i6hr49er9li7ewqr&tag=ordbVHPNXHNPLHNM7bc7qa6pqqbXW1Wzz1y0uldRLKqeqV1Utrqp3TupldK6V0rqZa667q6XT3VUU2zOnttqpltdK6Z0rpXSumdM6V0rpXOdK7rYQSACWNSlOcLoWVEc0rp5XSuldK6V0rpXSuldNZVdLLZTPc5zpXSuldK6V0rpXSuldK6Z0rpXFWDbvXM3YQRZ7afB19j3UHX7vX2PUP7nOd1sIJABLGpSna20U0XUWW7XT3VT10cS6a6TzS3S0bXV2uD7&t1=hdpornos.xxx&t2=85822604&t3=713732&t4=953792&t5=4651548
Detected Brand
eBay
Country
International
Confidence
95%
HTTP Status
200
Report ID
fd71099f-42e…
Analyzed
2026-03-01 15:55

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1BAE1BB318482856B00D352E456739B9BB3A09351EA578E251BF4C3FE4FDAF68CF0B562
CONTENT ssdeep
48:PzIkvFKY9zvlwJd7gKeLWkhuaPo3xI0G9cbZjG9EwBmFideG9czyYhBSHbycUiGb:PFDJw7SHQPqmsczSFEa69O4k04iK5o

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
e66699b1a298b333
VISUAL aHash
e70000e7e7e7ffff
VISUAL dHash
0c210c0c0f0c0008
VISUAL wHash
e700e3e3c0fcf0f0
VISUAL colorHash
07200038040
VISUAL cropResistant
0c210c0c0f0c0008

Code Analysis

Risk Score 53/100
Threat Level ALTO
āš ļø Phishing Confirmed
šŸŽ£ Credential Harvester

šŸ”¬ Threat Analysis Report

• Threat: Phishing
• Target: eBay users
• Method: Impersonation with sexually suggestive content.
• Exfil: Unknown (likely directs to a malicious site or campaign).
• Indicators: Domain mismatch, explicit content, brand impersonation
• Risk: High

šŸ”’ Obfuscation Detected

  • fromCharCode

šŸ“Š Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain is completely unrelated to eBay
Content Irrelevance and NSFW
The image and text content has nothing to do with eBay and is sexually suggestive, indicating a malicious intent.
Brand Impersonation
Logo of eBay used to attempt to build trust

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Credential Harvesting Kit
Target
eBay users (International)
Attack Method
Brand impersonation + obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

āš ļø Indicators of Compromise

  • Kit types: Credential Harvester
  • 2 obfuscation techniques

šŸ¢ Brand Impersonation Analysis

Impersonated Brand
eBay
Official Website
ebay.com
Fake Service
Classifieds

Fraudulent Claims

āš”ļø Attack Methodology

Primary Method: Brand Impersonation

The attacker uses the eBay logo and branding to trick users into believing the site is legitimate. The use of sexual content distracts users from the phishing aspect of the site.

Secondary Method: Redirection/Malicious Intent

The site likely redirects to a malicious site or campaign.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
secret-flirts.com
Registered
2020-04-16
Registrar
Namecheap
Status
ACTIVE

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.