EN ES PT
Back to Stats

Visual Capture

Screenshot of immediateexperience.biz

Detection Info

https://immediateexperience.biz/
Detected Brand
Unknown
Country
International
Confidence
100%
HTTP Status
200
Report ID
462bbd1d-e0d…
Analyzed
2026-02-23 13:12
Final URL (after redirects)
https://immediateexperience.biz/es/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T16913D93108C46F2F519392C8E3106A4BD3958149E37A4E4AF5EBC31B16C9EC5D92BFAC
CONTENT ssdeep
768:Ead2BZ6UbpePklMs92SSVY5Yw9UO/DErec0Ie3LldSJmxKMEJAh:Ead2B84sPwN92SAYqw2O/3fbRxKMEJAh

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
9414ebeacbcac896
VISUAL aHash
fd06060606fffffd
VISUAL dHash
71ccccccec1c3b3b
VISUAL wHash
fd060606060efff9
VISUAL colorHash
0e0000001c0
VISUAL cropResistant
4021496161490162,96d6e8b094710f8e,c0181c2d633b1b23,ccecccccccececec

Code Analysis

Risk Score 94/100
Threat Level ALTO
āš ļø Phishing Confirmed
šŸŽ£ Credential Harvester šŸŽ£ OTP Stealer šŸŽ£ Banking

šŸ”¬ Threat Analysis Report

• Threat: Phishing
• Target: Cryptocurrency investors
• Method: Account creation form, potentially leading to data harvesting or redirect.
• Exfil: Data entered into the form.
• Indicators: Domain age, obfuscated JavaScript, form submission, and crypto-related content.
• Risk: High

šŸ”’ Obfuscation Detected

  • fromCharCode
  • unescape
  • unicode_escape
  • base64_strings

šŸŽÆ Kit Endpoints

  • https://immediateexperience.biz/es/login/

šŸ“” API Calls Detected

  • POST

šŸ“Š Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

JavaScript Obfuscation
Indicates attempts to hide malicious code.
Recent Domain Age
New domains are frequently used for phishing.
Form Submission
Forms are used to harvest data.
Suspicious Content
Focus on crypto is a common lure.

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Banking Credential Harvester
Target
General public
Attack Method
obfuscated JavaScript
Exfiltration Channel
Unknown
Risk Assessment
CRITICAL - Automated credential harvesting with Unknown

āš ļø Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking
  • 174 obfuscation techniques

šŸ¢ Brand Impersonation Analysis

Impersonated Brand
Immediate 70 Bumex
Fake Service
Crypto investment education/platform

Fraudulent Claims

āš”ļø Attack Methodology

Primary Method: Credential Harvesting

The site is designed to trick users into entering their personal information through a registration form, likely for future phishing attacks.

Secondary Method: Data Harvesting

The information collected will be used to profile users and attempt financial fraud.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
immediateexperience.biz
Registered
2023-02-03
Registrar
NameCheap
Status
ACTIVE

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.