Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13C02137286A5AD7710E385D0AAB63F5BE5E1834CCB530A0483FC935D57EBD8CEC95904 |
|
CONTENT
ssdeep
|
192:puVsvcZBkRMHe5P5QtxxjHEX1FMoX3dgaZwogp:sqckRMH2xQtxdHEXXM63dgaZwPp |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
fa1545406a6b6f95 |
|
VISUAL
aHash
|
00ffff81c381c1c1 |
|
VISUAL
dHash
|
c130332b2b2b2b2b |
|
VISUAL
wHash
|
00ffff81d98181d9 |
|
VISUAL
colorHash
|
0e000038000 |
|
VISUAL
cropResistant
|
203333292b292b2b,badaeab2b2eadaaa,bad8e8b2b2e8d8aa,9ad8e8f2f2e8d8aa,badaeab2b2eadaaa,badaeab2b2eadab2,badce8b2b2e8d4b2,9adae8f2f2e8d492,ba9aeab2b2eadab2,babadaeabab2b2aa,9a9ad8e8bab2b2e8,9a9ad8e8faf2f2ea,babadaeabab2b2aa,0080c07090d29000,552a2a2a2aaa2aaa |
• Threat: Phishing scam offering rewards under the guise of Orange.
• Target: Orange customers internationally, particularly in French-speaking regions.
• Method: Luring users with a lottery-style reward offer; clicking on an envelope may lead to a credential harvesting or malware site.
• Exfil: Unknown, likely to a database or command and control server.
• Indicators: Brand impersonation, mismatched domain (dailyprizehub.com), reward claim, lottery format.
• Risk: MEDIUM - Users might click and be redirected to a credential harvesting or malware site.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain