Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1E023B6659209B0620B7A4FF4E87D01171297599FF9B2A0A09E36F7E634C3FF5AD5E008 |
|
CONTENT
ssdeep
|
768:pPtgr3eDYMjxJ015h5OBWa9FHqqZjispgNmzUmKE+GnIWnIjiD99jifIAair9ucx:pPtgr3YYMjxJ01zgBWa9FHqqZjispgNv |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b372ce8158ce8cbc |
|
VISUAL
aHash
|
efe7c7c4476fffff |
|
VISUAL
dHash
|
8c0f9d099dd9ce36 |
|
VISUAL
wHash
|
67c7c0c0454f6fc3 |
• Threat: Facebook credential harvesting phishing attack.
• Target: Facebook users internationally.
• Method: Presents a fake Facebook login page to steal email/phone number and password.
• Exfil: Likely to a remote server controlled by the attacker.
• Indicators: The domain name does not match the official Facebook domain, visual similarity to official page.
• Risk: HIGH - Immediate credential theft.
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain