EN ES PT
Back to Stats

Visual Capture

Screenshot of api-dsbot-pay.cc

Detection Info

https://api-dsbot-pay.cc/
Detected Brand
Unknown
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
f1731417-c0d…
Analyzed
2026-06-01 06:12

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T18DB1743151546A37C04F92D66274A37F72E9C2C9DA9703D9B3FCA3D617D6CAACC29082
CONTENT ssdeep
96:T59donleIiSup5/zQxbYcyaypXhvYIRz2Q6UDL51AQLHamLnRQnJ:l9unIp57QAhhZEQxLrAQLHFL6nJ

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cb392ccccb9330ce
VISUAL aHash
183c3c3c3c3c3c3c
VISUAL dHash
7069696969686968
VISUAL wHash
3c3c3c3c3c3c3c3c
VISUAL colorHash
38000000e40
VISUAL cropResistant
7069696969686968

Code Analysis

Risk Score 30/100
Threat Level ALTO
āš ļø Phishing Confirmed

šŸ”’ Obfuscation Detected

  • unescape
  • base64_strings

šŸ“” API Calls Detected

  • POST

šŸ“Š Risk Score Breakdown

Total Risk Score
30/100

Contributing Factors

Code Obfuscation
JavaScript code obfuscated using 3 technique(s) to evade detection

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Unknown Threat
Target
General public
Attack Method
obfuscated JavaScript
Exfiltration Channel
Unknown
Risk Assessment
LOW - Automated credential harvesting with Unknown

āš ļø Indicators of Compromise

  • 3 obfuscation techniques

šŸ¢ Brand Impersonation Analysis

Impersonated Brand
Generic Phishing
Official Website
N/A
Fake Service
Credential harvesting service

āš”ļø Attack Methodology

Primary Method: Phishing Webpage

Generic phishing page with unclear attack methodology. May use social engineering, brand impersonation, or other tactics to deceive victims.

Secondary Method: JavaScript Obfuscation

Malicious code is obfuscated using 3 techniques to evade detection by security scanners and make reverse engineering more difficult.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
api-dsbot-pay.cc
Registered
2025-08-22 14:18:49+00:00
Registrar
Cloudflare, Inc.
Status
Active (282 days old)

Hosting Information

Provider
Cloudflare, Inc.
ASN

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.