EN ES PT
Back to Stats

Visual Capture

Screenshot of eaqui-solicita-pre-aprobado.rf.gd

Detection Info

https://eaqui-solicita-pre-aprobado.rf.gd/
Detected Brand
Banco Pichincha
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
07a0931e-17c…
Analyzed
2026-04-22 23:33
Final URL (after redirects)
https://eaqui-solicita-pre-aprobado.rf.gd/?i=1

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1B821DCF58141E827ABA2D0A141A1F75EB0D5C2C4D68B4F4A52E9928857DBCF8CEE1D82
CONTENT ssdeep
24:hWCHvCTMZj1Xz5chQluF0OY3NT+CiYMtF9:jpFdOGUFHY3ZhML9

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
b33399cc269999cc
VISUAL aHash
e7e7e7e7e7ffffff
VISUAL dHash
4c4c4c4d2c300800
VISUAL wHash
2424242427033f3f
VISUAL colorHash
07001038000
VISUAL cropResistant
4c4c4c4d2c300800

Code Analysis

Threat Level ALTO
⚠️ Phishing Confirmed

📊 Risk Score Breakdown

Total Risk Score
40/100

🔬 Comprehensive Threat Analysis

Threat Type
Banco Pichincha Phishing Landing Page
Target
Banco Pichincha users
Attack Method
Phishing webpage
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
LOW - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

🏢 Brand Impersonation Analysis

Impersonated Brand
Banco Pichincha
Official Website
N/A
Fake Service
Credential harvesting service

⚔️ Attack Methodology

Primary Method: SEO Poisoning Landing Page

Fake Banco Pichincha page designed to appear in search results and trick users into visiting. May redirect to credential harvesting pages, malware downloads, or serve as a trust-building step before requesting sensitive information.

Secondary Method: Standard Phishing Techniques

Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
eaqui-solicita-pre-aprobado.rf.gd
Registered
2013-08-25 21:43:51+00:00
Registrar
Key Systems GmbH
Status
Active (older domain)

Hosting Information

Provider
Key Systems GmbH
ASN

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.