EN ES PT
Back to Stats

Visual Capture

Screenshot of bexivolixtrade.com

Detection Info

https://bexivolixtrade.com/
Detected Brand
Bexivolix
Country
International
Confidence
95%
HTTP Status
200
Report ID
e9c8f1e1-6ac…
Analyzed
2026-08-11 23:11

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1975284F65055A93B82B7C2D6B726233E92E356CDC6C7150167FCCB5A09E2F82FC22815
CONTENT ssdeep
192:rzQ8PFM9ubfm62i44B+duHlcDlxHPlURA8oko9/I9oT4s54n751bAjGKkRS:fPC9ubeQ44l6RxHPlAokoBioT7

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
8c9f736449db4c61
VISUAL aHash
000f3f3f1e186c60
VISUAL dHash
f8fcf0f0f0b0c888
VISUAL wHash
001f3f3f1e1c7c68
VISUAL colorHash
38000000038
VISUAL cropResistant
f8fcf0f0f0b0c888

Code Analysis

Risk Score 53/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Threat: Financial/Investment Phishing
• Target: Users seeking crypto/enterprise investment
• Method: High-quality deceptive template with hidden exfil JS
• Exfil: JavaScript-based form collection
• Indicators: Domain created 12 days ago
• Risk: High

🔒 Obfuscation Detected

  • unescape

📡 API Calls Detected

  • /api/sms-verification-status
  • POST
  • /api/sms/verify
  • /api/sms/send

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Recent Domain
Registered < 30 days ago.
Obfuscated JS
Detected unescape and hidden submission logic.
Investment Impersonation
Generic 'Global Enterprise' branding.

🔬 Comprehensive Threat Analysis

Threat Type
Two-Factor Authentication Stealer
Target
Bexivolix users (International)
Attack Method
Brand impersonation + obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 2 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
Bexivolix
Fake Service
Investment/Enterprise platform

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Credential Harvesting

Uses a professional landing page to lure users into providing information via forms.

Secondary Method: Obfuscated Exfiltration

JavaScript obfuscation hides the destination of user-entered data.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
bexivolixtrade.com
Registered
2026-07-30
Registrar
unknown
Status
active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.