EN ES PT
Back to Stats

Visual Capture

No screenshot available

Detection Info

https://hellowelcomesptclientstationonlinedashboardbaranayek.artkiyotomotiv.com/
Detected Brand
Unknown
Country
International
Confidence
95%
HTTP Status
200
Report ID
f7d56a70-e97…
Analyzed
2026-07-19 23:14

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1EC216371918C9C765D82E3B4A3F0E14B27C1C660CB1B1A401AFCDBAC9AE1D90CF246C9
CONTENT ssdeep
24:hRYLBCtO8hrCYOuyZSPV+BhVLEFM2nJdMcBTx0XXJgEuuVyH6yS:TqUNZ19+B/y5nV7IJgEuuVY6J

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cc3333cccc3399cc
VISUAL aHash
0000181818180000
VISUAL dHash
0000303030300010
VISUAL wHash
0000181838380000
VISUAL colorHash
38000000e00
VISUAL cropResistant
0000303030300010

Code Analysis

Risk Score 3/100
Threat Level ALTO
⚠️ Phishing Confirmed

🔬 Threat Analysis Report

• Threat: Phishing Gate
• Target: General Users
• Method: Human verification bypass
• Exfil: Likely subsequent page
• Indicators: Obfuscated JS, suspicious domain
• Risk: Critical

🔒 Obfuscation Detected

  • base64_strings

📊 Risk Score Breakdown

Total Risk Score
95/100

Contributing Factors

Suspicious URL Structure
Randomized domain name.
Bot-Filtering Gate
Presence of a fake verification gate.
Obfuscated Content
Base64 strings in script tags.

🔬 Comprehensive Threat Analysis

Threat Type
Unknown Threat
Target
General public
Attack Method
credential harvesting forms + obfuscated JavaScript
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
LOW - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • 1 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
Unknown
Fake Service
Service Dashboard

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Phishing Gate

Uses a verification page to bypass automated scanners. Once the human user solves the code, they are redirected to a malicious destination.

Secondary Method: Domain Spoofing

Uses a long, nonsense string to mimic a legitimate dashboard URL.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
hellowelcomesptclientstationonlinedashboardbaranayek.artkiyotomotiv.com
Registered
2008-09-26
Registrar
Unknown
Status
Active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.