Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T139922B29B54A5C62DF33C4C2E4E06D273499E3078A1A09E15BD905B59FD3CF0B989FB4 |
|
CONTENT
ssdeep
|
96:YiryG1T0aP6kGxhHQEkAIKpaF5rZ5FXQ/60Lok+EcDgzSgILwz09MANjiVy5E3L4:Yi7TpBEflsk0szIGOVX/0/6 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
dcdd73f1e6260809 |
|
VISUAL
aHash
|
e7fc181818180000 |
|
VISUAL
dHash
|
0f32b3333332440e |
|
VISUAL
wHash
|
ffff3c3c3c3c0000 |
|
VISUAL
colorHash
|
39600008200 |
|
VISUAL
cropResistant
|
06066669c30f0684,0008bc98b9b7bc9d,0f00000000000008,a6a294554d3931c2,0f32b3333332440e |
• Threat: Multi-brand e-commerce phishing
• Target: Users of Coupang, SSG, AliExpress, Gmarket, 11ST, Olive Young, and Lotte ON, primarily in South Korea
• Method: Fake notice offering commissions for processing orders after depositing funds
• Exfil: Data sent to an unknown destination (likely for financial theft)
• Indicators: Unrelated domain, suspicious business model, obfuscated JavaScript
• Risk: CRITICAL - Potential for financial loss and data theft
Pages with identical visual appearance (based on perceptual hash)