Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T155F271AA96547C3B015347E3A93C471196F58A47DA87196CB6FC839C4BC2DB0EA7302E |
|
CONTENT
ssdeep
|
768:OoKX9lxn2CabXdRJNfguxmw5yQfC0sk2pRt5nXxXXLlXpuvuQyZmdme:TCabPjYuxmw5yQfC0sRpRt5nXxXJXpuT |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b4cb342ccb34c3cb |
|
VISUAL
aHash
|
ffffffffff838383 |
|
VISUAL
dHash
|
810c0e0c00151414 |
|
VISUAL
wHash
|
788781e7ff838382 |
|
VISUAL
colorHash
|
070c1001040 |
|
VISUAL
cropResistant
|
810c0e0c00151414,37d6d6d998494954,0080401616690000,0082619696618200,0000611696410000,0080211212610000 |
โข Threat: Phishing
โข Target: Web3 Crypto Users
โข Method: Impersonation and Credential Harvesting
โข Exfil: https://backedupweb3quantumledger.com/
โข Indicators: New domain, obfuscated javascript, attempts to impersonate crypto wallet
โข Risk: High
The site likely attempts to harvest credentials (seed phrases, private keys, or wallet login info) from users by presenting a fake login form or creating a fake wallet.
Obfuscated JavaScript is likely used to steal inputted data.
Found 1 other scan for this domain