EN ES PT
Back to Stats

Captura Visual

Screenshot of plan-whatapp.hk.cn

Informações de Detecção

http://plan-whatapp.hk.cn/
Detected Brand
WhatsApp
Country
International
Confiança
90%
HTTP Status
200
Report ID
64edac0c-0f6…
Analyzed
2026-07-17 22:11

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1D012A9B350010E6D1B2A579C77C3B25491ECB698D8945C10BFEC8BFE0EDADE1A1D7162
CONTENT ssdeep
96:tLdRGiWJ4nNBieTNKcRGMbwyWibwyubwNRGIbwGMqh9bwm2UUUVGRGj80KbwEIEg:7WidUcvTJ2UTVG70DEohHuVY1kzptY

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
d3d26c6c31938367
VISUAL aHash
407c7e2e00383020
VISUAL dHash
8cecd8d8d8e0c4c2
VISUAL wHash
62fc7e7e403c3c60
VISUAL colorHash
38007000000
VISUAL cropResistant
a3ababac6b535868,8cecd8d8d8e0c4c2

Análise de Código

Risk Score 62/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Ameaça: Phishing/Impersonificação de marca
• Alvo: Usuários do WhatsApp
• Método: Typosquatting e página de serviços enganosa
• Exfil: Desconhecido
• Indicadores: Domínio não oficial, registro recente, código ofuscado
• Risco: Alto

🔒 Obfuscation Detected

  • eval
  • unescape
  • hex_escape
  • unicode_escape

📡 API Calls Detected

  • POST

📊 Detalhamento da Pontuação de Risco

Total Risk Score
90/100

Contributing Factors

Domain Integrity
Typosquatting on a high-value brand
Domain Age
Registered less than 3 days ago

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Two-Factor Authentication Stealer
Alvo
WhatsApp users (International)
Método de Ataque
Brand impersonation + obfuscated JavaScript
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 19 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
WhatsApp
Official Website
https://www.whatsapp.com
Fake Service
WhatsApp Web Workflow/Business Dashboard

Fraudulent Claims

⚔️ Metodologia de Ataque

Primary Method: Brand Impersonation

The site uses a typosquatted domain to appear as a legitimate extension of WhatsApp's service, targeting users looking for workflow/business tools.

Secondary Method: Credential Harvesting

Obfuscated scripts may be used to inject malicious behavior once a user interacts with the 'business' tools on the site.

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
plan-whatapp.hk.cn
Registered
2026-07-15
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

Scan History for plan-whatapp.hk.cn

Found 1 other scan for this domain

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.