EN ES PT
Back to Stats

Visual Capture

Screenshot of eurocreditalliance.com

Detection Info

https://eurocreditalliance.com/
Detected Brand
Unknown / Financial Investment Scam
Country
International
Confidence
90%
HTTP Status
200
Report ID
fe81bcce-44b…
Analyzed
2026-08-12 23:16

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1108275B3E242163B1AB381D7A7B71336B3E5408ED592261563FC870E8BCADC1FD52952
CONTENT ssdeep
384:RykroIIX4uzk3ZIgUQqZIgUQG1OXYlB77iEa3:R1oIIXqZIgUQqZIgUQGLz303

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
c35c3c952e473c39
VISUAL aHash
20e060606f7f6701
VISUAL dHash
5050c0c8d7dccecf
VISUAL wHash
38e0e0607f7f6721
VISUAL colorHash
38007400000
VISUAL cropResistant
5050c0c8d7dccecf

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Threat: Investment Fraud
• Target: Cryptocurrency investors
• Method: Financial deception via fake AI trading platform
• Exfil: JavaScript form collection
• Indicators: High-yield investment promises, non-existent corporate presence
• Risk: Critical

📡 API Calls Detected

  • /api/sms/send
  • /api/sms-verification-status
  • /api/sms/verify

📊 Risk Score Breakdown

Total Risk Score
85/100

Contributing Factors

Content
Investment scam language regarding crypto returns
Functionality
Unsecured form data collection

🔬 Comprehensive Threat Analysis

Threat Type
Two-Factor Authentication Stealer
Target
Unknown / Financial Investment Scam users (International)
Attack Method
Phishing webpage
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer

🏢 Brand Impersonation Analysis

Impersonated Brand
N/A
Fake Service
AI-driven crypto investment portfolio

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Investment Fraud (Crypto)

The site serves as a lures page to capture contact information under the guise of an AI investment platform to funnel victims into manual social engineering.

Secondary Method: Data harvesting

Collecting email/phone numbers for future phishing or pump-and-dump campaigns.

Target Blockchain
Ethereum

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
eurocreditalliance.com
Registered
2026-03-16
Registrar
Unknown
Status
Active

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.