EN ES PT
Back to Stats
100 Risk Score

High Risk

Threat Level: ALTO • Impersonating: Nordnet

⚠ Risk Factors

  • Brand impersonation of Nordnet on non-official domain
  • Contains 5 form(s) with JavaScript submission
  • JavaScript obfuscation detected (7 patterns)
  • Credential harvesting indicators detected
  • OTP/2FA stealing indicators detected

Visual Capture

Screenshot of athentonline.weebly.com

Detection Info

https://athentonline.weebly.com/
Detected Brand
Nordnet
Country
International
Confidence
100%
HTTP Status
200
Report ID
946dc1fb-f0d…
Analyzed
2026-01-07 10:22

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1BCF185F1E050DD330B5281C6B7B67B2F79E5C245CF010A9452F843AE5BCFDA1CA1299A
CONTENT ssdeep
96:nk+toezYtqOSTu/bN8v67MMdPGfl1AwvFHeJXBHF0eFXLX/kUo0BSLoST5+Ax431:k+toezYtke58iI2PpPVdXVo0ByhPeF

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
87ff0178817e017e
VISUAL aHash
ffffffffff000000
VISUAL dHash
40206800600000c0
VISUAL wHash
ffffffff00000000
VISUAL colorHash
160000001c0
VISUAL cropResistant
5040002060606060,8080808080808080,00000000000080d0

Code Analysis

Risk Score 100/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info

🔐 Credential Harvesting Forms

🔒 Obfuscation Detected

  • atob
  • eval
  • fromCharCode
  • unescape
  • hex_escape
  • unicode_escape
  • base64_strings