EN ES PT
Back to Stats

Visual Capture

No screenshot available

Detection Info

https://profitevofundlex.com/
Detected Brand
Unknown
Country
International
Confidence
85%
HTTP Status
200
Report ID
fe62b541-586…
Analyzed
2026-08-12 23:22

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1C67284B260405A3F42F7D2CDB6A1337FA1D24589E98A025153ED4F3E9AEBF10EC1651B
CONTENT ssdeep
384:1anIIoqYTtTcJkcTmV862ixTfxUfJtzlKJp:1anIIdYFcVm+62i/cS

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
9ed5232631cd8e33
VISUAL aHash
c0c0fc9c0d171303
VISUAL dHash
040021313d2563ff
VISUAL wHash
c0f0fcdc0f1f0707
VISUAL colorHash
38000000098
VISUAL cropResistant
040021313d2563ff

Code Analysis

Risk Score 53/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Threat: Financial Fraud/Scam
• Target: Investors
• Method: Deceptive corporate landing page
• Exfil: JavaScript-based submission
• Indicators: Generic 'investment' buzzwords, no clear business identity
• Risk: High

🔒 Obfuscation Detected

  • unescape

📡 API Calls Detected

  • POST
  • /api/sms/verify
  • /api/sms/send
  • /api/sms-verification-status

📊 Risk Score Breakdown

Total Risk Score
85/100

Contributing Factors

Domain Age
Site is only 55 days old
Content
Generic high-yield investment scam buzzwords
Technical
Use of obfuscated JavaScript for exfiltration

🔬 Comprehensive Threat Analysis

Threat Type
Two-Factor Authentication Stealer
Target
General public
Attack Method
obfuscated JavaScript
Exfiltration Channel
Unknown
Risk Assessment
MEDIUM - Automated credential harvesting with Unknown

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 2 obfuscation techniques

🏢 Brand Impersonation Analysis

Impersonated Brand
N/A
Fake Service
Corporate Investment/Consulting

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Financial Fraud / HYIP

The site acts as a facade for a potential fraudulent investment scheme, using professional language to lure victims into providing personal data or capital.

Secondary Method: Data harvesting

Use of obfuscated scripts to capture visitor interaction data for future phishing campaigns.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
profitevofundlex.com
Registered
2026-06-18
Registrar
Unknown
Status
Active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.