Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13F325330703B7CA3CB518B75BED58B1861BB98A0C2665D0D73FC588E9AE3D44AE3065D |
|
CONTENT
ssdeep
|
96:nReE70ruHNaIPWcB6/R9QdcT06GWGyGjcbfv9cPlYH+esyLwj0AgWE:ReE7hWcU/R9bPGiv9eCwL8 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ed6d6d9292929293 |
|
VISUAL
aHash
|
c3c3c3ffffffffff |
|
VISUAL
dHash
|
1696962912480000 |
|
VISUAL
wHash
|
c3c3c3dfff4e0000 |
|
VISUAL
colorHash
|
07000600010 |
|
VISUAL
cropResistant
|
1696962912480000,202c20a026080020 |
• Threat: Credential harvesting phishing targeting FedEx users.
• Target: FedEx customers.
• Method: Fake login form stealing user ID and password.
• Exfil: Likely to a custom API or database.
• Indicators: Domain mismatch, login form on unofficial domain.
• Risk: HIGH - Real-time credential theft.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain