Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17281ED6240C4552B220B65C3AD227B59B6F3033DCB7B0D25F2FD06DA6BE8F91D917825 |
|
CONTENT
ssdeep
|
96:hzguG/IiC9uto2STbisDIo3DDD0xT/XO80DL:EwiC9u83ia5D0xTfOL |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8c6457a5a8de87cc |
|
VISUAL
aHash
|
12003cdbdb3f3c3c |
|
VISUAL
dHash
|
e6c660b3b3cef0d4 |
|
VISUAL
wHash
|
12003cd1db3f7e3c |
|
VISUAL
colorHash
|
31001c00000 |
|
VISUAL
cropResistant
|
6dd6cec3b0ec3a1c,70e8d4b2b2295d71,71e9cc96ba296979,808013c4ccccea15,e6c660b3b3cef0d4 |
• Threat: Cryptocurrency scam phishing kit impersonating Solana.
• Target: Solana users.
• Method: Luring users with a 'welcome bonus' and 'free spin' game to connect their wallets to potentially steal their crypto assets.
• Exfil: Likely exfiltrates wallet information upon connection.
• Indicators: Domain mismatch, new domain, Solana brand impersonation, and promotional scam tactics.
• Risk: HIGH - Users are at risk of losing their cryptocurrency if they connect their wallets.
Pages with identical visual appearance (based on perceptual hash)