EN ES PT
Back to Stats

Visual Capture

No screenshot available

Detection Info

https://tinu.be/en/blocked?url=fEk34g4ky
Detected Brand
tinu.be
Country
International
Confidence
100%
HTTP Status
200
Report ID
e3ddced6-9dc…
Analyzed
2026-03-12 08:13

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1E4B34DF83604B26B0563439B90EF24077379121FF41E4CA0B788ED9AA6D9C97A077F95
CONTENT ssdeep
1536:kaZ3GcGA3olUuRNka2wblHbJLwLIz9GguGOjjRnY:zGkkrX2wd9W/guGO+

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
be6398cc4b6a384b
VISUAL aHash
01240000e7dfffdf
VISUAL dHash
698c4c4c28302131
VISUAL wHash
00000202ffdfffdf
VISUAL colorHash
071c0000000
VISUAL cropResistant
698c4c4c28302131

Code Analysis

Risk Score 100/100
Threat Level BAJO
šŸŽ£ Credential Harvester šŸŽ£ OTP Stealer šŸŽ£ Banking šŸŽ£ Personal Info

šŸ”¬ Threat Analysis Report

• Threat: None - Website has detected and blocked a phishing attempt.
• Target: tinu.be (Shortened URL)
• Method: User attempted phishing through the service.
• Exfil: No exfiltration detected.
• Indicators: Warning message displayed.
• Risk: Low

šŸ”’ Obfuscation Detected

  • atob
  • fromCharCode
  • base64_strings

šŸŽÆ Kit Endpoints

  • /auth/login

šŸ“” API Calls Detected

  • /api/session
  • GET
  • POST
  • https://www.google.com/ccm/geo

šŸ“Š Risk Score Breakdown

Total Risk Score
10/100

Contributing Factors

Domain Age
Domain is not new, decreasing the chance of it being a parked phishing site.

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Banking Credential Harvester
Target
tinu.be users (International)
Attack Method
obfuscated JavaScript
Exfiltration Channel
Unknown
Risk Assessment
CRITICAL - Automated credential harvesting with Unknown

āš ļø Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 73 obfuscation techniques

šŸ¢ Brand Impersonation Analysis

āš”ļø Attack Methodology

Primary Method: N/A - The site blocked a phishing attempt.

N/A - The site detected and blocked a phishing attempt using its link shortening service.

Secondary Method: N/A

N/A

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
tinu.be
Registered
None
Registrar
None
Status
None

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.