EN ES PT
Back to Stats

Captura Visual

Screenshot of metamask.login.auth.accountdetails.kitlogin.casa

Informações de Detecção

https://metamask.login.auth.accountdetails.kitlogin.casa/
Detected Brand
MetaMask
Country
Unknown
Confiança
100%
HTTP Status
200
Report ID
0ac92bf2-557…
Analyzed
2026-05-29 22:17

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1E431213020948C3756E2E7E89AB6E73E3286DB21CFC72601B7F857AC5BD6D82CE50050
CONTENT ssdeep
24:hsCQhPkQstWX7twOFp4lTAXdyYh4rhq/QN9FclXuAzN9s2HtHB+J1RC/:y1HjrK8wcXX4M/QH0XPzHnNhC18/

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
b3266699999999cc
VISUAL aHash
e7c3e7ffffe7e7ff
VISUAL dHash
0c4d4d10140c4d00
VISUAL wHash
c3c3c3c3c3c3c3c3
VISUAL colorHash
070000001c0
VISUAL cropResistant
0c4d4d10140c4d00,000432320cb2320c

Análise de Código

Risk Score 10/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed

📡 API Calls Detected

  • process.php

📊 Detalhamento da Pontuação de Risco

Total Risk Score
70/100

Contributing Factors

Credential Harvesting
Credential harvesting detected with 1 form(s) capturing sensitive data

🔬 Análise Integral de Ameaças

Tipo de Ameaça
MetaMask Credential Harvester
Alvo
MetaMask users
Método de Ataque
credential harvesting forms
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
LOW - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

🏢 Análise de Falsificação de Marca

Impersonated Brand
MetaMask
Official Website
https://metamask.io
Fake Service
Account login portal

⚔️ Metodologia de Ataque

Primary Method: MetaMask Credential Harvesting

Fake MetaMask login page with 1 form. Victim enters credentials which are captured and transmitted to attacker's server. Page may impersonate MetaMask official login to appear legitimate.

Secondary Method: Client-Side Form Interception

JavaScript intercepts form submissions before they reach the fake backend. This allows real-time credential harvesting and validation without server round-trips.

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
metamask.login.auth.accountdetails.kitlogin.casa
Registered
2026-05-29 13:54:16+00:00
Registrar
PDR Ltd. d/b/a PublicDomainRegistry.com
Estado
Age unknown

Hosting Information

Provider
PDR Ltd. d/b/a PublicDomainRegistry.com
ASN

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.