EN ES PT
Back to Stats

Visual Capture

Screenshot of immediate-plexmax-com-gen1.trackfinanceworld.com

Detection Info

https://immediate-plexmax-com-gen1.trackfinanceworld.com/
Detected Brand
Immediate PlexMax
Country
International
Confidence
100%
HTTP Status
200
Report ID
0056735c-5ab…
Analyzed
2026-02-23 12:05

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1C9E2303714455E3F2197C2CAB6B07B0EE6DAE549CBA35A567BE8830D07D2E80CD32D61
CONTENT ssdeep
768:Qqy1RdETM+I+zt5x2dV1xKYtRMuglZXJ6CMx8q:EzETM+IrdV2mdgx6CMxl

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
c7b9b8c6bcb24941
VISUAL aHash
ffff000030342400
VISUAL dHash
23c3d26cecc4cc8c
VISUAL wHash
ffff780036363600
VISUAL colorHash
39200418000
VISUAL cropResistant
40004b6323434001,f48c16165a9280c0,0020046871700c20,d2d2cc6ce4ccccac

Code Analysis

Risk Score 76/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: Phishing
• Target: Cryptocurrency users
• Method: Credential harvesting and scam
• Exfil: Unknown, likely to a database
• Indicators: Domain mismatch, form, urgency.
• Risk: High

🔒 Obfuscation Detected

  • fromCharCode
  • unicode_escape

🎯 Kit Endpoints

  • /login

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Suspicious Domain
The domain name is not a direct match to the target brand.
Forms Collecting Data
The site collects PII and financial information, common in phishing scams.
Urgency Tactic
The warning about closing registration creates pressure.
Obfuscation Detected
Code Obfuscation is a tactic to avoid detection by security scanners.

🔬 Comprehensive Threat Analysis

Threat Type
Banking Credential Harvester
Target
Immediate PlexMax users (International)
Attack Method
Brand impersonation + credential harvesting forms + obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, Banking, Personal Info
  • 12 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
Immediate PlexMax
Fake Service
Crypto Trading Platform

⚔️ Attack Methodology

Primary Method: Credential Harvesting

The site uses a form to collect email, password and personal information with the goal of stealing credentials or performing identity theft.

Secondary Method: Brand Impersonation

The site attempts to imitate the brand's look and feel to gain user trust.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
immediate-plexmax-com-gen1.trackfinanceworld.com
Registered
None
Registrar
None
Status
None

🤖 AI-Extracted Threat Intelligence

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.