Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T15BD3B732D510BA3701E392E956B15BAFB6C2E666D937430677F8D7980FDAF20CE12205 |
|
CONTENT
ssdeep
|
1536:VXj+a8vj+aeaj+aeaj+aeaj+aeaj+aeaj+aeaj+aeP:R |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
803f3f60617f7e40 |
|
VISUAL
aHash
|
003f7fff7f7f7f7f |
|
VISUAL
dHash
|
c1f9f8e0c0e0e0c0 |
|
VISUAL
wHash
|
00003c3c30301030 |
• Threat: Blockchain wallet phishing attempting to impersonate Upside.
• Target: Users of Upside blockchain wallets.
• Method: The page redirects users to potentially malicious links by listing a range of 'issues' that may require 'rectification', 'migration' etc.
• Exfil: Likely aims to redirect users to credential harvesting or malicious smart contracts.
• Indicators: Free hosting, brand impersonation, deceptive text, multiple options related to wallet issues.
• Risk: HIGH - Potential for cryptocurrency theft and wallet compromise.
Pages with identical visual appearance (based on perceptual hash)