EN ES PT
Back to Stats

Visual Capture

Screenshot of bhraskilon.pro

Detection Info

https://bhraskilon.pro/
Detected Brand
Unknown
Country
International
Confidence
100%
HTTP Status
200
Report ID
84397ae7-075โ€ฆ
Analyzed
2026-08-10 23:13

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1BEF28532A255AE3B40A792E5F3A5632F32D2D28AC946034483FD43BD0BFBD94FD26554
CONTENT ssdeep
768:4arxdjDXIRAwyjq9AoAV9AvphCg0uf/bUmJo5+hp:xDXIRGuf/bUmwE

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
ba3ac5eadc28718a
VISUAL aHash
fd9f8f8d85e1f1fe
VISUAL dHash
2b3d393929030324
VISUAL wHash
bd8f0f0d8581c0fe
VISUAL colorHash
07600018000
VISUAL cropResistant
2b3d393929030324

Code Analysis

Risk Score 79/100
Threat Level ALTO
โš ๏ธ Phishing Confirmed
๐ŸŽฃ Credential Harvester ๐ŸŽฃ OTP Stealer ๐ŸŽฃ Banking ๐ŸŽฃ Personal Info

๐Ÿ”ฌ Threat Analysis Report

โ€ข Threat: Phishing/Credential Harvesting
โ€ข Target: Cryptocurrency users
โ€ข Method: Fake investment portal
โ€ข Exfil: /create_lead/ endpoint
โ€ข Indicators: Obfuscated JS, non-indexed domain
โ€ข Risk: High

๐Ÿ” Credential Harvesting Forms

๐Ÿ”’ Obfuscation Detected

  • unescape
  • unicode_escape
  • base64_strings

๐Ÿ“ก API Calls Detected

  • POST

๐Ÿ“ค Form Action Targets

  • /create_lead/

๐Ÿ“Š Risk Score Breakdown

Total Risk Score
95/100

Contributing Factors

JavaScript Obfuscation
Detected unescape/unicode_escape techniques.
Deceptive Content
Fake investment/bonus incentives.
Infrastructure
Suspicious .pro TLD used for financial services.

๐Ÿ”ฌ Comprehensive Threat Analysis

Threat Type
Banking Credential Harvester
Target
General public
Attack Method
credential harvesting forms + obfuscated JavaScript
Exfiltration Channel
HTTP POST to backend
Risk Assessment
HIGH - Automated credential harvesting with HTTP POST to backend

โš ๏ธ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 35 obfuscation techniques

๐Ÿข Brand Impersonation Analysis

Impersonated Brand
Bhraskilon
Fake Service
Crypto Exchange

Fraudulent Claims

โš”๏ธ Attack Methodology

Primary Method: Credential Harvesting

The site lures victims with fake bonuses to capture login credentials.

Secondary Method: Data Exfiltration

Submission of form data via /create_lead/ to external controlled endpoints.

๐ŸŒ Infrastructure Indicators of Compromise

Domain Information

Domain
bhraskilon.pro
Registered
Unknown
Registrar
Unknown
Status
active

๐Ÿค– AI-Extracted Threat Intelligence

๐Ÿ˜ฐ
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.