EN ES PT
Back to Stats

Captura Visual

Screenshot of zxcursed0mifony-hash.github.io

Informações de Detecção

https://zxcursed0mifony-hash.github.io/Vkontakte
Detected Brand
VKontakte
Country
Unknown
Confiança
100%
HTTP Status
200
Report ID
e70213b9-195…
Analyzed
2026-08-31 10:25
Final URL (after redirects)
https://zxcursed0mifony-hash.github.io/Vkontakte/

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T16672146633229B2DB053F4B87771A6327D8D80A5A95763B4C7B35E34F0AFC509DA0E84
CONTENT ssdeep
384:rfsa46Jsa4FXlsa46Jsa4Ffmsa4tlsa4Pz:LeyeZleyeVmeHeb

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
bd16c2a956dd3912
VISUAL aHash
ffff81800199ffff
VISUAL dHash
108a333333331288
VISUAL wHash
ffbf00800081bdff
VISUAL colorHash
07007000000
VISUAL cropResistant
108a333333331288

Análise de Código

Risk Score 25/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
Telegram Exfiltration

🔑 Telegram Bot Tokens (1)

  • 8712563091:AAEg...gZWBn6gg

📊 Detalhamento da Pontuação de Risco

Total Risk Score
70/100

Contributing Factors

Credential Harvesting
Credential harvesting detected with 6 form(s) capturing sensitive data
Telegram Exfiltration
Real-time data exfiltration via Telegram (1 bot token(s) exposed in client-side code)

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Data Exfiltration Campaign
Alvo
VKontakte users
Método de Ataque
credential harvesting forms
Canal de Exfiltração
Telegram Bot (8712563091:AAEg-wCQ4...)
Avaliação de Risco
LOW - Automated credential harvesting with Telegram Bot (8712563091:AAEg-wCQ4...)

⚠️ Indicators of Compromise

  • 1 Telegram bot token(s)

🏢 Análise de Falsificação de Marca

Impersonated Brand
VKontakte
Official Website
N/A
Fake Service
Credential harvesting service

⚔️ Metodologia de Ataque

Primary Method: VKontakte Credential Harvesting

Fake VKontakte login page with 6 forms. Victim enters credentials which are captured and transmitted to attacker's server. Page may impersonate VKontakte official login to appear legitimate.

Secondary Method: Client-Side Form Interception

JavaScript intercepts form submissions before they reach the fake backend. This allows real-time credential harvesting and validation without server round-trips.

📡 Infraestrutura de Comando e Controle Telegram

Bot Token (Masked)
8712563091:AAEg...gZWBn6gg
Bot ID
8712563091
Group/Chat ID
Unknown
Operator Language
Unknown

💬 Message Templates (3)

ID Português Inglês Trigger

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
zxcursed0mifony-hash.github.io
Registered
Unknown
Registrar
Unknown
Estado
Hosting platform (subdomain)

Hosting Information

Provider
Unknown
ASN

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.