EN ES PT
Back to Stats

Captura Visual

Screenshot of cumbrerelmartech-com.financecryptoworld.com

Informações de Detecção

https://cumbrerelmartech-com.financecryptoworld.com/
Detected Brand
Unknown
Country
International
Confiança
100%
HTTP Status
200
Report ID
351dfe66-a5d…
Analyzed
2026-02-22 16:14

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1E633723760046A7B128386C6B7753B6FA3DAD244E7574A2667F8E30C07DBE81CD31962
CONTENT ssdeep
768:9LCjSkL+IOSZXFzrXFCaBQCU4onDYsAJxTOpJuJ5OaRlahxq:YmkL+IzB7QHn7AOpJuJ5OaR8I

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
f66cc93f9134c229
VISUAL aHash
f0f0f0c6868686fc
VISUAL dHash
6427242c2c2c2c91
VISUAL wHash
f0f0f0e6868686fc
VISUAL colorHash
03000008030
VISUAL cropResistant
61311333233333c8,04d8c6c474247058,6427242c2c2c2c91

Análise de Código

Risk Score 76/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Ameaça: Phishing
• Alvo: Traders/usuários de criptomoedas
• Método: Personificação e coleta de credenciais
• Exfil: Dados do formulário de registro
• Indicadores: Domínio suspeito, formulário de registro, urgência.
• Risco: Alto

🔒 Obfuscation Detected

  • fromCharCode
  • unicode_escape

🎯 Kit Endpoints

  • /login

📊 Detalhamento da Pontuação de Risco

Total Risk Score
90/100

Contributing Factors

Suspicious Domain
The domain name includes irrelevant keywords and is not a well-known brand.
Forms requesting sensitive information
The site requests email, password, etc., typical of credential phishing.
Urgency Tactics
The site uses urgency to prompt immediate action.
Obfuscation
Javascript obfuscation detected.

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Banking Credential Harvester
Alvo
General public
Método de Ataque
credential harvesting forms + obfuscated JavaScript
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 12 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
Cumbre Relmar
Fake Service
Crypto Trading Platform

⚔️ Metodologia de Ataque

Primary Method: Credential Harvesting

The attacker aims to steal user credentials by creating a fake login/signup form that looks like a crypto platform.

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
cumbrerelmartech-com.financecryptoworld.com
Registered
2023-11-08
Registrar
Namecheap
Estado
active

🤖 AI-Extracted Threat Intelligence

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.