Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13DD368A50F5CA34D552BC8A88C3ED9B15B0FE0FD758D12A25CEEA7B010575C8ECB3668 |
|
CONTENT
ssdeep
|
768:ulOlNp3/IBsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSsSs3:aOlP3/ImyA5 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b5345b6195a4b13d |
|
VISUAL
aHash
|
020006766662002e |
|
VISUAL
dHash
|
b6410ce6c6969148 |
|
VISUAL
wHash
|
5e0007776f6600ff |
|
VISUAL
colorHash
|
30040006000 |
|
VISUAL
cropResistant
|
8e63b98ce692c965,496868589a5674a9,b6411ce6c6969168 |
• Threat: Cryptocurrency airdrop scam
• Target: Jupiter users
• Method: Fake website promising airdrop to steal cryptocurrency
• Exfil: Likely aims to steal funds if users connect their wallets
• Indicators: New domain, domain name mismatch, claims of exclusive rewards
• Risk: HIGH - Potential for cryptocurrency theft
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain