EN ES PT
Back to Stats

Captura Visual

Screenshot of app.btrustsave.org

Información de Detección

https://app.btrustsave.org/
Detected Brand
Bancorp Trust Savings
Country
USA
Confianza
100%
HTTP Status
200
Report ID
f8febab4-8be…
Analyzed
2026-02-27 19:35

Hashes de Contenido (Similitud HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T12453233C63C1573550CB87B2E5949F29D29DCBD9DF27AD8BF2ACD2471A8AC448F42260
CONTENT ssdeep
768:X/YFf8q7RobfXHwo4xBg281EVNx1v3PZBGEWbDjfdeHYV:ifJ7xlx1v3P2EWb9

Hashes Visuales (Similitud de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
a9abd0b2c2ead2d2
VISUAL aHash
ff0b0b1303030100
VISUAL dHash
dbd7d3d3d7d79b90
VISUAL wHash
ff1b1b3b1303035a
VISUAL colorHash
07600008040
VISUAL cropResistant
ebdfd3d3d3d7d7b3,2040838b73a36393,dfd3d3d3d7d39a90

Análisis de Código

Risk Score 79/100
Nivel de Amenaza ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Amenaza: Phishing
• Objetivo: Usuarios de Bancorp Trust Savings
• Método: Suplantación de dominio, ofuscación de javascript.
• Exfil: Probablemente robo de credenciales.
• Indicadores: Coincidencia de dominio, javascript ofuscado, dominio sospechoso.
• Riesgo: Alto

🔒 Obfuscation Detected

  • fromCharCode
  • unescape
  • unicode_escape

🎯 Kit Endpoints

  • https://app.btrustsave.org/send-money
  • https://app.btrustsave.org/login
  • https://app.btrustsave.org/verify

📡 API Calls Detected

  • https://libretranslate.com/translate
  • POST

📊 Desglose de Puntuación de Riesgo

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain does not belong to the brand being impersonated.
Javascript Obfuscation
Code obfuscation is a common technique used to hide malicious code, such as keyloggers or credential stealers.

🔬 Análisis Integral de Amenazas

Tipo de Amenaza
Banking Credential Harvester
Objetivo
Bancorp Trust Savings users (USA)
Método de Ataque
Brand impersonation + obfuscated JavaScript
Canal de Exfiltración
Form submission (backend endpoint not detected - likely JavaScript-based)
Evaluación de Riesgo
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Card Stealer, Banking, Personal Info
  • 9 obfuscation techniques

🏢 Análisis de Suplantación de Marca

Impersonated Brand
Bancorp Trust Savings
Fake Service
Banking Services

⚔️ Metodología de Ataque

Primary Method: Credential Harvesting

The attacker likely aims to steal user credentials. The site may redirect to a login page or present a form for data entry. The javascript obfuscation is intended to hide malicious actions.

🌐 Indicadores de Compromiso de Infraestructura

Domain Information

Dominio
app.btrustsave.org
Registered
None
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensé que me pasaría a mí"
Esto dicen las 2.3 millones de víctimas cada año. No esperes a ser una estadística.