Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B912D8F3432094DD069AD95AEF17B249F146D0EBFE261E0097D95B9F90C3DE0E812A13 |
|
CONTENT
ssdeep
|
192:ZepIjHmanS0IjHIanL0YOsfmPR1GZBqZ5SqugxuOoRnigni6U3qV0OKPGUJIjHil:Z+I7lnJI7nnoYOsfmPR1oBshVVoPOqVw |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8c9ce3e3d1c1e3e0 |
|
VISUAL
aHash
|
7f1f1f181800f0f8 |
|
VISUAL
dHash
|
f2b2b2b2b2c4c0c0 |
|
VISUAL
wHash
|
ff1f1f181840f0f8 |
|
VISUAL
colorHash
|
061c8000000 |
|
VISUAL
cropResistant
|
f2b2b2b2b2c4c0c0 |
• Threat: Potential redirect to a malicious Telegram channel
• Target: Telegram users
• Method: Redirect via shortened URL (tx.me) to a potentially harmful channel
• Exfil: No data exfiltration detected from the screenshot.
• Indicators: Usage of a URL shortener (tx.me).
• Risk: LOW - User needs to click the link to be exposed to any potential threat.
Found 10 other scans for this domain