Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13ED188382309053EE683C3F8F792B73A526C42DADF174298F2A881755349E56EE27164 |
|
CONTENT
ssdeep
|
96:n5fQOLAhRYBJqEx+FdNVkU1V13yIRhVUkhSk8EyLkmgdyPku+3tPkOT6:5fJAhR0BxqNfJXRhi6S+kmdyPP+3tPlm |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c99866d689a627d9 |
|
VISUAL
aHash
|
7c181a5a18207620 |
|
VISUAL
dHash
|
f0b2b2b2b2d4c4c4 |
|
VISUAL
wHash
|
7e581a5a782afe22 |
|
VISUAL
colorHash
|
30600018000 |
|
VISUAL
cropResistant
|
20b22d1313499400,f0b2b2b2b2d4c4c4 |
• Threat: Cryptocurrency wallet phishing
• Target: Users of Pump Fun and Padre
• Method: Fake website prompting users to connect their wallets
• Exfil: Unknown (likely wallet addresses and private keys)
• Indicators: New domain, brand impersonation, obfuscated JavaScript
• Risk: CRITICAL - Potential for immediate loss of cryptocurrency
Pages with identical visual appearance (based on perceptual hash)