Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T15D837731D393151390ABC1D9B1724B4933928789CA134BB577FD63BAF9CECB53622298 |
|
CONTENT
ssdeep
|
1536:9L/JwZkOYGee8XeSXehYPUgOq61eUdpgJteUkeeIdqtS1QCvHorefSzzM/3ZsfH+:9Si1PPUgOq6QV3RHm+MRk222I222222B |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3cc4e393293c5cc |
|
VISUAL
aHash
|
7c307e4e4c4c4c44 |
|
VISUAL
dHash
|
c0e3e0988a9a8888 |
|
VISUAL
wHash
|
7c707e4e4e4e4646 |
|
VISUAL
colorHash
|
02200038000 |
|
VISUAL
cropResistant
|
c0e3e0988a9a8888,099924f031272b2b,d7693248cccc442c,272b6f37477b3b23,93d6692371f1e1e0,5757631961514161 |
โข Threat: Phishing
โข Target: Shopee users
โข Method: Impersonation through a fake giveaway.
โข Exfil: Likely steals credentials or personal information.
โข Indicators: Domain mismatch, suspicious content, obfuscated Javascript.
โข Risk: High
The site likely attempts to collect user credentials by enticing users to input their information to participate in the fake giveaway. It may redirect to a form or directly capture data.
If a user interacts with the page (clicks on links, clicks on the giveaway, downloads files) it could install malware.
Pages with identical visual appearance (based on perceptual hash)