EN ES PT
Back to Stats

Visual Capture

Screenshot of sw.run

Detection Info

https://sw.run/MSZHM
Detected Brand
FinanceRoutine
Country
International
Confidence
100%
HTTP Status
200
Report ID
2a4e21d6-b35…
Analyzed
2026-01-15 00:38
Final URL (after redirects)
https://financeroutine.com/daily-financial-literacy-habits-improve-money-decisions/?utm_source=sw.run.MSZHM&utm_medium=referral&utm_campaign=lnnf

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T199731F5596266EBD148F03878B6593617BCD810DCF7002E1CAB4D22AB3C9CD4ED91BEE
CONTENT ssdeep
1536:x/Xp838B+HS05kPuvqnSYXTwBiW1RWf/GS4hodHKyu:x/Xp8XHS05kPuvwSswBiWrK/GS4hodqd

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
b232c9cd2ecdc932
VISUAL aHash
ff87878787dfffff
VISUAL dHash
320d1f2e2f1ab20a
VISUAL wHash
df818783838bdb83
VISUAL colorHash
06001008080
VISUAL cropResistant
320d1f2e2f1ab20a,ccb6b2361f2b0756,a5b6b6c440d9dccc,07082ab959594948

Code Analysis

Risk Score 82/100
Threat Level BAJO
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: None detected
• Target: General audience interested in financial literacy
• Method: Informational blog content
• Exfil: No data exfiltration detected
• Indicators: Domain matches brand, legitimate content, no malicious activity
• Risk: LOW - Legitimate financial advice site

🔐 Credential Harvesting Forms

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • https://www.google.com/ccm/geo
  • POST

📤 Form Action Targets

  • https://financeroutine.com/

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.