EN ES PT
Back to Stats

Captura Visual

Screenshot of app.btrustsave.org

Informações de Detecção

https://app.btrustsave.org/
Detected Brand
Bancorp Trust Savings
Country
USA
Confiança
100%
HTTP Status
200
Report ID
f8febab4-8be…
Analyzed
2026-02-27 19:35

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T12453233C63C1573550CB87B2E5949F29D29DCBD9DF27AD8BF2ACD2471A8AC448F42260
CONTENT ssdeep
768:X/YFf8q7RobfXHwo4xBg281EVNx1v3PZBGEWbDjfdeHYV:ifJ7xlx1v3P2EWb9

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
a9abd0b2c2ead2d2
VISUAL aHash
ff0b0b1303030100
VISUAL dHash
dbd7d3d3d7d79b90
VISUAL wHash
ff1b1b3b1303035a
VISUAL colorHash
07600008040
VISUAL cropResistant
ebdfd3d3d3d7d7b3,2040838b73a36393,dfd3d3d3d7d39a90

Análise de Código

Risk Score 79/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Ameaça: Phishing
• Alvo: Usuários do Bancorp Trust Savings
• Método: Falsificação de domínio, ofuscação de javascript.
• Exfil: Provável roubo de credenciais.
• Indicadores: Incompatibilidade de domínio, javascript ofuscado, domínio suspeito.
• Risco: Alto

🔒 Obfuscation Detected

  • fromCharCode
  • unescape
  • unicode_escape

🎯 Kit Endpoints

  • https://app.btrustsave.org/send-money
  • https://app.btrustsave.org/login
  • https://app.btrustsave.org/verify

📡 API Calls Detected

  • https://libretranslate.com/translate
  • POST

📊 Detalhamento da Pontuação de Risco

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain does not belong to the brand being impersonated.
Javascript Obfuscation
Code obfuscation is a common technique used to hide malicious code, such as keyloggers or credential stealers.

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Banking Credential Harvester
Alvo
Bancorp Trust Savings users (USA)
Método de Ataque
Brand impersonation + obfuscated JavaScript
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Card Stealer, Banking, Personal Info
  • 9 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
Bancorp Trust Savings
Fake Service
Banking Services

⚔️ Metodologia de Ataque

Primary Method: Credential Harvesting

The attacker likely aims to steal user credentials. The site may redirect to a login page or present a form for data entry. The javascript obfuscation is intended to hide malicious actions.

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
app.btrustsave.org
Registered
None
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.