Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10E618930A082B93711EBC6E5EB39639FB2D48254DE439B0A53F4C39C8AC6D8FDC61504 |
|
CONTENT
ssdeep
|
48:ntoMaJa6TvolZ6Dfod2NZHS1g5jJ59OB5kA5pL5ikma55HN5KMf559I:ntNwoL6Dwd94jT9O7k2pV9mY5PKg5y |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e19394ed4d84f4e |
|
VISUAL
aHash
|
000b01ff3430ffff |
|
VISUAL
dHash
|
72dbdbb46465a555 |
|
VISUAL
wHash
|
000b01ff3030ffff |
|
VISUAL
colorHash
|
07207000000 |
|
VISUAL
cropResistant
|
8282e2eaeae28282,dbdf99646565a955,62db1adbdbefbdde,d9e6766663697926,4c9736666d595932,6dccd9f3b7b7bfb6,616d6c5e3e7e7e7c,0d06020606069a9a |
• Threat: Website clone phishing for e-commerce users
• Target: Amazon customers
• Method: Impersonating the Amazon website to trick users into believing it's legitimate.
• Exfil: Likely aims to steal login credentials and payment information when users make purchases.
• Indicators: Free hosting on Vercel, domain name impersonation, fake store categories
• Risk: CRITICAL - Potential loss of login credentials and payment details
Pages with identical visual appearance (based on perceptual hash)
Found 4 other scans for this domain