MSSP Intelligence Tool
Phishing Kit Fingerprinter
Paste a suspicious URL. We probe it server-side for Bluekit, Evilginx, GoPhish, and Modlishka signatures — checking domain age, DNS, HTML/JS patterns, and live threat feeds.
Try:
Detects signatures from
Bluekit
AI PhaaS, Telegram exfil, 40+ brand templates
Evilginx2/3
AiTM reverse proxy, real session capture, MFA bypass
GoPhish
Open-source simulation, ?rid= tracking links
Modlishka
Go-based AiTM reverse proxy, ?pl= lure links
Privacy — server-side probing only
All URL fetching happens on the server — your browser never touches the suspicious URL directly. RDAP, DNS, URLhaus, and ThreatFox lookups are made server-side. No input URLs are stored or logged.