EN ES PT
Back to Stats

Captura Visual

Screenshot of sicrediexpoabf.com.br

Informações de Detecção

https://sicrediexpoabf.com.br
Detected Brand
Sicredi
Country
International
Confiança
100%
HTTP Status
200
Report ID
a355a7ae-25f…
Analyzed
2026-03-01 21:37
Final URL (after redirects)
https://sicrediexpoabf.com.br/

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T176C29830204067BB656B4DE872A0F3AB61E9970DC45BD006F7B882A62BCECF1C713785
CONTENT ssdeep
768:CfajONX8XjX9X4XBX71XCfYS9HKEzGdTdnH5b88m9:U8KvNc

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
d338c33acb363cc1
VISUAL aHash
00000000000e7e7e
VISUAL dHash
19989030702cc8c0
VISUAL wHash
88c898b8187e7e7e
VISUAL colorHash
01040006200
VISUAL cropResistant
6dacad9594e8a425,19989030702cc8c0

Análise de Código

Risk Score 100/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Ameaça: Phishing
• Alvo: Clientes Sicredi
• Método: Falsificação com um formulário para coletar informações e oferecer um prêmio.
• Exfil: Envio do Formulário
• Indicadores: Incompatibilidade de domínio, ofuscação Javascript, formulário para dados pessoais.
• Risco: Alto

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape
  • hex_escape
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • w
  • https://www.google.com/ccm/geo

📊 Detalhamento da Pontuação de Risco

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain does not match the legitimate Sicredi domain.
Active Phishing Kit
The site has a form for collecting personal information and javascript obfuscation.
Impersonation
The site uses Sicredi's branding to impersonate the brand
Reward Tactics
Offers a prize, which is a common phishing tactic.

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Banking Credential Harvester
Alvo
Sicredi users (International)
Método de Ataque
Brand impersonation + credential harvesting forms + obfuscated JavaScript
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
CRITICAL - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 72 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
Sicredi
Fake Service
ABF Franchising Expo 2025

⚔️ Metodologia de Ataque

Primary Method: Credential Harvesting

The attacker is using a fake website that imitates Sicredi's branding to lure victims into providing personal information via a form, which can be used for identity theft or further phishing attacks.

Secondary Method: Social Engineering

The promise of a prize and the use of the Sicredi logo are methods of social engineering, preying on users' trust.

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
sicrediexpoabf.com.br
Registered
None
Registrar
None
Estado
None

🤖 AI-Extracted Threat Intelligence

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.