EN ES PT
Back to Stats

Visual Capture

No screenshot available

Detection Info

https://santeassurancemiss.ngrok.pro/mycss-ch/
Detected Brand
CSS
Country
Switzerland
Confidence
95%
HTTP Status
200
Report ID
cdfd5b4e-ea8…
Analyzed
2025-12-23 13:12

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1CB11D046409C5E6F5743D1F413E6D30A39E2D591CF432B0E4BF863DC1AD6F86C965184
CONTENT ssdeep
24:3CZiW9WAuWMqqNEN9u2mdqt2Wj7dwvrCZXR2CTR:Al9TufvaHSdyj3dw4xR

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cccc33333399cc66
VISUAL aHash
0000181818180000
VISUAL dHash
0830b2b22ab23008
VISUAL wHash
3c2418181b1b071f
VISUAL colorHash
00007000000
VISUAL cropResistant
0830b2b22ab23008

Code Analysis

Risk Score 75/100
Threat Level ALTO
🎣 Credential Harvester
Telegram Exfiltration

🔬 Threat Analysis Report

• Threat: Credential harvesting phishing kit
• Target: CSS insurance users
• Method: Fake login form stealing email and password
• Exfil: Unknown, likely to a fraudulent server
• Indicators: Unofficial domain (ngrok.pro), brand impersonation
• Risk: HIGH - Immediate credential theft

🔑 Telegram Bot Tokens (1)

  • 8404840326:AAH8...czES9qec
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.