EN ES PT
Back to Stats

Visual Capture

Screenshot of bitcoinhyper-presale.pages.dev

Detection Info

https://bitcoinhyper-presale.pages.dev/
Detected Brand
Bitcoin Hyper
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
f94ef0b9-94c…
Analyzed
2026-06-19 12:00

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T146017565165C251B1186F3E0ABF0F37660CA0569CB051A053AD851FC03DDF49CAB9108
CONTENT ssdeep
12:hRwMy7FUYbU2NwzIZcpkCqFGSoOWbgBRoWtmeusCyG2k3uSe4AqB1JOvvZ8Y8cy0:hR/C1b7XZcS3dLRokRusbG20esjMZqcF

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
88666799d9669999
VISUAL aHash
0f0707071f1f070f
VISUAL dHash
ffffcfdff3f3cfff
VISUAL wHash
0f0f07071f1f0f0f
VISUAL colorHash
300000001c0
VISUAL cropResistant
a282a63c3c8e8080,a282ba5adaaa80a0,ffffcfdff3f3cfff

Code Analysis

Risk Score 25/100
Threat Level ALTO
āš ļø Phishing Confirmed
Telegram Exfiltration

šŸ”‘ Telegram Bot Tokens (1)

  • 7980531197:AAEr...B8NuC7l4

šŸ“Š Risk Score Breakdown

Total Risk Score
70/100

Contributing Factors

Telegram Exfiltration
Real-time data exfiltration via Telegram (1 bot token(s) exposed in client-side code)

šŸ”¬ Comprehensive Threat Analysis

Threat Type
Data Exfiltration Campaign
Target
Bitcoin Hyper users
Attack Method
Phishing webpage
Exfiltration Channel
Telegram Bot (7980531197:AAErKXqmV...)
Risk Assessment
LOW - Automated credential harvesting with Telegram Bot (7980531197:AAErKXqmV...)

āš ļø Indicators of Compromise

  • 1 Telegram bot token(s)

šŸ¢ Brand Impersonation Analysis

Impersonated Brand
Bitcoin Hyper
Official Website
N/A
Fake Service
Credential harvesting service

āš”ļø Attack Methodology

Primary Method: Brand Impersonation Redirect

Impersonates Bitcoin Hyper to build victim trust through search engine manipulation or malicious advertisements. Often redirects to credential theft pages or serves malware disguised as legitimate software.

Secondary Method: Standard Phishing Techniques

Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.

šŸ“” Telegram Command & Control Infrastructure

Bot Token (Masked)
7980531197:AAEr...B8NuC7l4
Bot ID
7980531197
Group/Chat ID
Unknown
Operator Language
Unknown

šŸ’¬ Message Templates (3)

ID Portuguese English Trigger

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
bitcoinhyper-presale.pages.dev
Registered
Unknown
Registrar
Unknown
Status
Hosting platform (subdomain)

Hosting Information

Provider
Unknown
ASN

šŸ¤– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.