Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T108732EF2D440966353239CE4D2739A1A2EC7992ADF8878106EBF43F7DAD3D60B488417 |
|
CONTENT
ssdeep
|
1536:9p919UO9jV979F9K9d9k9F929q9Z9z9t9p9r9x9M9u9T9P9u9a9H9e9K9i939N9h:Ja1 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
99cddc2267366632 |
|
VISUAL
aHash
|
3c3c1c0000000000 |
|
VISUAL
dHash
|
7070300c1c8c8c9c |
|
VISUAL
wHash
|
fcfefec2c0c0c242 |
|
VISUAL
colorHash
|
07007000000 |
|
VISUAL
cropResistant
|
a0b2ae9ca2e2c0a2,7070300c1c8c8c9c |
• Threat: Credential harvesting phishing kit
• Target: Zoho users internationally
• Method: Fake document sharing page stealing email addresses
• Exfil: Data sent to unknown server
• Indicators: Free hosting, domain mismatch, obfuscated JavaScript
• Risk: HIGH - Immediate credential theft
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain