Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12BA12F7604895BAA46C397B27BB5D71EB385C0D0DB13272C24E9C31FAFD5E45CC0A662 |
|
CONTENT
ssdeep
|
96:nkcGanTKcus9HZqRS5v9KRS5oRS5dRS5/RS5iRS5JfKKoGcGME:kqTKw9HIRPR5RmRqRdRyfDoGcE |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cc6532cd7131cd33 |
|
VISUAL
aHash
|
423060d83c3c0705 |
|
VISUAL
dHash
|
8664aeb272602c0d |
|
VISUAL
wHash
|
c63070fe3e3c8707 |
• Threat: Credential harvesting phishing
• Target: Netflix users
• Method: Fake Netflix landing page stealing email address
• Exfil: Unknown - likely to a remote server
• Indicators: Free hosting, brand impersonation, domain mismatch
• Risk: HIGH - Potential credential theft and account compromise
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain