Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T132B1AF3230C031BF06D7A7AD7924ABAAA3F34166CB564E4122EA4B4F4FA3D44DD53187 |
|
CONTENT
ssdeep
|
48:nGnEmRJJPShy5oNBR6gDfdwp7uBDXWi9Oj8qG8O5h4198yyuKQM0uGXi4hNztWgj:nG5oN6gDfCp7yLOa4b8wQgf |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8c8f3323b909b727 |
|
VISUAL
aHash
|
01183c38000000ff |
|
VISUAL
dHash
|
017070b230000054 |
|
VISUAL
wHash
|
013c3c3c000000ff |
• Threat: Netflix phishing attempting to lure users with a free trial.
• Target: Netflix users internationally.
• Method: Presents a fake landing page with a button to start a free 30-day trial.
• Exfil: Unknown, likely redirects to a data harvesting form or malware download upon clicking the button.
• Indicators: Free hosting platform, mismatched domain, Netflix branding.
• Risk: HIGH - Potential credential harvesting or malware distribution.
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain