Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13341C8E491645B7D3EC640C0DFE1E229D3C889C7A7632B445AF101DB8E26BA3C0602A6 |
|
CONTENT
ssdeep
|
48:stWYWuhbBZwN7B6jUHu2gYWpWYb9XtmAyxGpSSN5jVkUrb1w:sgTTU2gF+AdpSSNjki6 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e464cedb31756464 |
|
VISUAL
aHash
|
c3ffc3c3ffffffff |
|
VISUAL
dHash
|
0e08969600040000 |
|
VISUAL
wHash
|
03270303e4fcfcfc |
• Threat: Phishing targeting gambling users, redirecting to malicious sites.
• Target: Users potentially interested in Asia Gaming (AG) or Long.bet, primarily Chinese speaking users.
• Method: Deceptive redirection through fake safety check claiming to lead to AG direct access.
• Exfil: Unclear; likely redirects to a website intended for credential theft or malware download.
• Indicators: Domain mismatch, suspicious domain name, Chinese language, recent domain registration.
• Risk: HIGH - Redirects users to potentially malicious websites for credential theft or malware installation.
Pages with identical visual appearance (based on perceptual hash)