Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12AF1991FF31C33280A630295778543FAF72785ECE36146556ABCC15C37A12AA86B76CA |
|
CONTENT
ssdeep
|
192:Io5R0Ku5MRvZERDnL/7pLYxDOMph2O+B2:Io5R0B5GvZuzpLYxDOMT2O62 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9d90b7e5dae041ac |
|
VISUAL
aHash
|
ff1e18181800ffbf |
|
VISUAL
dHash
|
9cbcbbf176d63679 |
|
VISUAL
wHash
|
ff0e18180860ff9f |
|
VISUAL
colorHash
|
16c10000000 |
|
VISUAL
cropResistant
|
0020108e8636083c,ba0052a484d200be,636a46d6e4bcd97a,b4a4d4d8f4a57676,8b83703c69f0b2aa,c0a28a371382a2c4,a282cc4b1355a2a2,3600736763797d79,078080b0b0b0b0b0,bc3cbbf17136d6b6,4b174f7f7fffffef,333f4fc3d1d4d0d0 |
• Threat: Brand impersonation phishing
• Target: Trezor users
• Method: Displaying a fake Trezor website to potentially distribute malware or steal user information later on.
• Exfil: No data exfiltration is detected at this stage, but potential for malware distribution is high.
• Indicators: Free hosting, domain mismatch, brand impersonation
• Risk: HIGH - Potential for malware distribution and data theft
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain