EN ES PT
Back to Stats

Visual Capture

Screenshot of boost-lotemax-sys.com

Detection Info

https://boost-lotemax-sys.com/
Detected Brand
Unknown
Country
International
Confidence
95%
HTTP Status
200
Report ID
5e3d42f6-3a1…
Analyzed
2026-08-12 23:13

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1E35220F610C02E3B42F7D2D5A662737BD38241CAE4D6261867ED8F0F4ACAF54DD25906
CONTENT ssdeep
192:HcIEBRvEXjIIrxEaaO9yz6pJqYYrek1iUXZtujQiwZlQvBJ:H7EBR6IIrmeVHq2YZtqQi6Qv/

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
c34c38d3c6c7b13c
VISUAL aHash
0000247e7e6c0000
VISUAL dHash
d026c8e8e8c8c420
VISUAL wHash
7c002f7f7f7f0200
VISUAL colorHash
38200030000
VISUAL cropResistant
d026c8e8e8c8c420

Code Analysis

Risk Score 53/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Threat: Crypto Investment Scam
• Target: Retail Investors
• Method: Impersonation of a 'security/trading' tool
• Exfil: User credentials/Data submission
• Indicators: Obfuscated JS, suspicious domain, financial buzzwords
• Risk: High

🔒 Obfuscation Detected

  • unescape

📡 API Calls Detected

  • /api/sms-verification-status
  • POST
  • /api/sms/verify
  • /api/sms/send

📊 Risk Score Breakdown

Total Risk Score
95/100

Contributing Factors

Obfuscation
Presence of unescape obfuscation
Deceptive Content
Crypto scam rhetoric

🔬 Comprehensive Threat Analysis

Threat Type
Two-Factor Authentication Stealer
Target
General public
Attack Method
obfuscated JavaScript
Exfiltration Channel
Unknown
Risk Assessment
MEDIUM - Automated credential harvesting with Unknown

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 2 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
N/A
Fake Service
Crypto Trading Protection

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Credential Harvesting

Directs users to click on calls to action that lead to a secondary page for data harvesting or investment fraud.

Secondary Method: Social Engineering

Uses fake security claims to build false trust.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
boost-lotemax-sys.com
Registered
2026-03-09
Registrar
Unknown
Status
active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.