EN ES PT
Back to Stats

Visual Capture

Screenshot of www.easybank-landing-pi.vercel.app

Detection Info

http://www.easybank-landing-pi.vercel.app/
Detected Brand
Easybank
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
ec790cd4-5be…
Analyzed
2026-04-06 16:55
Final URL (after redirects)
https://easybank-landing-pi.vercel.app/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T12462857463700E2705A306FEBAD2A632A691E34AD716C9C01BD65DF53BE1F57E83204B
CONTENT ssdeep
384:pLMJ4KQ9WEN+9nYo0jBBkotrOeU49/5syBbaps:t0o+1KrOeU4/tBmK

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cd64b259a99b96a4
VISUAL aHash
f8f0f0f0f8f8f8ff
VISUAL dHash
5107666a42408827
VISUAL wHash
f0f0b080f0f0f8bf
VISUAL colorHash
07003000c00
VISUAL cropResistant
5107666a42408827,b28c8cb28b82b3aa,0c7354ccd41403c2

Code Analysis

Risk Score 68/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 Banking

🔒 Obfuscation Detected

  • fromCharCode

📊 Risk Score Breakdown

Total Risk Score
100/100

Contributing Factors

Active Phishing Kit
Detected kit types: Credential Harvester, Banking
Code Obfuscation
JavaScript code obfuscated using 2 technique(s) to evade detection

🔬 Comprehensive Threat Analysis

Threat Type
Banking Credential Harvester
Target
Easybank users
Attack Method
obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, Banking
  • 2 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
Easybank
Official Website
N/A
Fake Service
Banking/payment service

⚔️ Attack Methodology

Primary Method: Credential Harvesting

Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.

Secondary Method: JavaScript Obfuscation

Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
www.easybank-landing-pi.vercel.app
Registered
Unknown
Registrar
Unknown
Status
Hosting platform (subdomain)

Hosting Information

Provider
Unknown
ASN

🤖 AI-Extracted Threat Intelligence

Scan History for www.easybank-landing-pi.vercel.app

Found 1 other scan for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.