EN ES PT
Back to Stats

Visual Capture

Screenshot of assauao-kdtasewp8q.edgeone.app

Detection Info

http://assauao-kdtasewp8q.edgeone.app/goodnew0usaa.html
Detected Brand
USAA
Country
USA
Confidence
100%
HTTP Status
200
Report ID
06fc97b6-8b9…
Analyzed
2025-12-20 22:19
Final URL (after redirects)
https://assauao-kdtasewp8q.edgeone.app/goodnew0usaa.html

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AAA2416311049D371886CAF86BF9FF2A36528767DB854201D2E823ED0BEEDD0DE19794
CONTENT ssdeep
384:5U8i5iul09aWECcthMILmfiFfxbOeagnURY9S2CKEOeagnUCYyI2CnOeagnURYFq:vi5iul0sWCZrD8gDlOAvWqQYvQ

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
ff807f807f2a6850
VISUAL aHash
00ffffffffffff00
VISUAL dHash
7380414900000000
VISUAL wHash
00ff01efffff0000
VISUAL colorHash
07040000180
VISUAL cropResistant
a800510900000000,8040404041434380,100010b210959595,0040400000004000

Code Analysis

Risk Score 100/100
Threat Level ALTO
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info
Telegram Exfiltration

🔬 Threat Analysis Report

• Threat: Credential harvesting phishing
• Target: USAA customers
• Method: Fake login form stealing online ID
• Exfil: Unknown (likely to a malicious server)
• Indicators: Domain mismatch, non-official domain
• Risk: HIGH - Immediate credential theft

📡 API Calls Detected

  • GET

🔑 Telegram Bot Tokens (2)

  • 5167651471:AAGV...OSJnhbJ0
  • 1750418914:AAGv...yC3JCLPM

💬 Telegram Chat IDs (2)

  • 2128570674
  • -1001403579854
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.