Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T109D1426212F1982A1167C2C3B7B1376B2FE6A153D64A1304B47E4AA01FD7C4AEC3B4D8 |
|
CONTENT
ssdeep
|
48:nM3aIkZHW1MFeoOlDz/e+/EGz/uKDJbz/e+/hUUu9mdSH9/RL/x/9/vzLN:nWay1IeTlDqXGiKVbq6UB9md6JL5FjLN |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c3cf34751d491ec4 |
|
VISUAL
aHash
|
4a7c7c7c7c006004 |
|
VISUAL
dHash
|
d4c5f1ebe88cc2cc |
|
VISUAL
wHash
|
7af1fe7cfe006004 |
|
VISUAL
colorHash
|
30401008000 |
|
VISUAL
cropResistant
|
d4c5f1ebe88cc2cc |
• Threat: Credential harvesting phishing attack.
• Target: Netflix subscribers.
• Method: Fake Netflix landing page to collect email addresses.
• Exfil: Likely collecting email addresses for spam or account takeover attempts.
• Indicators: Free hosting on GitHub Pages, impersonates Netflix brand, email input form.
• Risk: HIGH - Could lead to account compromise or identity theft.
Pages with identical visual appearance (based on perceptual hash)
Found 3 other scans for this domain