Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T161E240B09156AA3B02F392F1BB752B6FB3D5E288D902070526FC875D4FCFE84E922151 |
|
CONTENT
ssdeep
|
384:dSj9r8g+VW3MZMPOSeabe6CygUyD084mR8m9Rd6zK:dS98g+VaMww1WQ8yYK |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e8693f1f1b1ac8a |
|
VISUAL
aHash
|
ff1410103c303c3c |
|
VISUAL
dHash
|
4c6d656070607960 |
|
VISUAL
wHash
|
ff04103c3e3c3c3e |
|
VISUAL
colorHash
|
0f000000e00 |
|
VISUAL
cropResistant
|
4c6d656070607960 |
• Threat: Credential harvesting phishing
• Target: Bet365 users, especially in Asia
• Method: Fake login form stealing username and password
• Exfil: Likely sent via /login_action.
• Indicators: Domain mismatch, forms detected, recent domain registration
• Risk: HIGH - Immediate credential theft
Pages with identical visual appearance (based on perceptual hash)
Found 8 other scans for this domain