Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1F3423373B000B937429781DAA661636AD3938756CA9A2B5663F9870E1FD3F43CC2245F |
|
CONTENT
ssdeep
|
192:oswl44o1xy13mDOYR6s7mrzkbXyiOTOzE:el44oqaOnssciiOh |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cc63368c9bcc33cc |
|
VISUAL
aHash
|
0000f0f878181800 |
|
VISUAL
dHash
|
c08080b2b2b0b4c8 |
|
VISUAL
wHash
|
20f0f8fcfc7e1e00 |
|
VISUAL
colorHash
|
38c01000000 |
|
VISUAL
cropResistant
|
c08080b2b2b0b4c8 |
⢠Threat: Investment Fraud / Phishing
⢠Target: Financial/Crypto Users
⢠Method: Deceptive Marketing
⢠Exfil: JavaScript Form Submission
⢠Indicators: Obfuscated JS, new domain
⢠Risk: High
Site uses deceptive branding to lure users into providing information via 'Say Hello' or 'Explore' flow.
Use of unescape to hide potential malicious redirect or data exfiltration scripts.