EN ES PT
Back to Stats
89 Risk Score

High Risk

Threat Level: MEDIO • Impersonating: Siri A-Nan Stock Management
  • • Threat: Potential data harvesting with obfuscated code.
  • • Target: Users of Siri A-Nan Stock Management.
  • • Method: Login form with possible JavaScript data submission.
  • • Exfil: Data exfiltration details are not immediately clear but JS submission suggests custom API.
  • • Indicators: Obfuscated JavaScript, login form, and custom domain.
  • • Risk: MEDIUM - Potential data compromise due to data harvesting.

⚠ Risk Factors

  • Credential harvesting indicators detected
  • Personal info theft indicators detected

Visual Capture

No screenshot available

Detection Info

http://siriananstock.com/if002.html
Detected Brand
Siri A-Nan Stock Management
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
98d05f18-6b5…
Analyzed
2025-12-31 20:08
Final URL (after redirects)
http://siriananstock.com/SignIn

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T10F61CF0350044969B35FB8CCE1817F8271F6D70BBF0ABED0217843395BE6ECA645A9B6
CONTENT ssdeep
48:OJs0QD2pJofobVY1/U3RL4TZW5OHiNemqTvi2fYqDwE3IWvyHz:O2kmfC0mqLiElwE3IsK

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
81f05ec55259de8b
VISUAL aHash
fcffdf4f2c300804
VISUAL dHash
d0c43c9cc9e67275
VISUAL wHash
fcffdf4f25100804
VISUAL colorHash
17032000000
VISUAL cropResistant
b1f08eac721c9c95,731ccee7f9fc7e3e,639fc8e3f1f8feff,0000a06060e80099,3200806060600078,396ca228e4aacb4a,d0c43c9cc9e67275,3a188c2011cce6b2

Code Analysis

Risk Score 89/100
Threat Level MEDIO
🎣 Credential Harvester 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: Potential data harvesting with obfuscated code.
• Target: Users of Siri A-Nan Stock Management.
• Method: Login form with possible JavaScript data submission.
• Exfil: Data exfiltration details are not immediately clear but JS submission suggests custom API.
• Indicators: Obfuscated JavaScript, login form, and custom domain.
• Risk: MEDIUM - Potential data compromise due to data harvesting.

🔐 Credential Harvesting Forms

🔒 Obfuscation Detected

  • fromCharCode
  • unescape
  • base64_strings