EN ES PT
Back to Stats

Captura Visual

Screenshot of sicrediexpoabf.com.br

Información de Detección

https://sicrediexpoabf.com.br
Detected Brand
Sicredi
Country
International
Confianza
100%
HTTP Status
200
Report ID
a355a7ae-25f…
Analyzed
2026-03-01 21:37
Final URL (after redirects)
https://sicrediexpoabf.com.br/

Hashes de Contenido (Similitud HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T176C29830204067BB656B4DE872A0F3AB61E9970DC45BD006F7B882A62BCECF1C713785
CONTENT ssdeep
768:CfajONX8XjX9X4XBX71XCfYS9HKEzGdTdnH5b88m9:U8KvNc

Hashes Visuales (Similitud de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
d338c33acb363cc1
VISUAL aHash
00000000000e7e7e
VISUAL dHash
19989030702cc8c0
VISUAL wHash
88c898b8187e7e7e
VISUAL colorHash
01040006200
VISUAL cropResistant
6dacad9594e8a425,19989030702cc8c0

Análisis de Código

Risk Score 100/100
Nivel de Amenaza ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Amenaza: Phishing
• Objetivo: Clientes de Sicredi
• Método: Suplantación de identidad con un formulario para recopilar información y ofrecer un premio.
• Exfil: Envío del formulario
• Indicadores: Coincidencia de dominio, ofuscación de Javascript, formulario para datos personales.
• Riesgo: Alto

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape
  • hex_escape
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • w
  • https://www.google.com/ccm/geo

📊 Desglose de Puntuación de Riesgo

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain does not match the legitimate Sicredi domain.
Active Phishing Kit
The site has a form for collecting personal information and javascript obfuscation.
Impersonation
The site uses Sicredi's branding to impersonate the brand
Reward Tactics
Offers a prize, which is a common phishing tactic.

🔬 Análisis Integral de Amenazas

Tipo de Amenaza
Banking Credential Harvester
Objetivo
Sicredi users (International)
Método de Ataque
Brand impersonation + credential harvesting forms + obfuscated JavaScript
Canal de Exfiltración
Form submission (backend endpoint not detected - likely JavaScript-based)
Evaluación de Riesgo
CRITICAL - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 72 obfuscation techniques

🏢 Análisis de Suplantación de Marca

Impersonated Brand
Sicredi
Fake Service
ABF Franchising Expo 2025

⚔️ Metodología de Ataque

Primary Method: Credential Harvesting

The attacker is using a fake website that imitates Sicredi's branding to lure victims into providing personal information via a form, which can be used for identity theft or further phishing attacks.

Secondary Method: Social Engineering

The promise of a prize and the use of the Sicredi logo are methods of social engineering, preying on users' trust.

🌐 Indicadores de Compromiso de Infraestructura

Domain Information

Dominio
sicrediexpoabf.com.br
Registered
None
Registrar
None
Estado
None

🤖 AI-Extracted Threat Intelligence

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"Nunca pensé que me pasaría a mí"
Esto dicen las 2.3 millones de víctimas cada año. No esperes a ser una estadística.