Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A50395729161EA7381C3C7F0933A676AB3C1C15ADB634B4982FC634D6BD2C52DC3661A |
|
CONTENT
ssdeep
|
768:Lili35IwuSI4I1q/bmuENs10YuT1wBGtu9/7ImC47:ui35IoI4I1q/b4Ns10h1wBGu/7IZ47 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9210ed7ee165971a |
|
VISUAL
aHash
|
00040e0e0c0c00ff |
|
VISUAL
dHash
|
83999cdc9818c40c |
|
VISUAL
wHash
|
004f6e6ece8e00ff |
|
VISUAL
colorHash
|
39400040001 |
|
VISUAL
cropResistant
|
7262f26b735e0898,6d696d66f230f8f0,0400000000000000,838998dc98980c84 |
• Threat: Credential harvesting phishing kit
• Target: TikTok users internationally
• Method: Fake login form stealing user credentials
• Exfil: Data sent to unknown server
• Indicators: Domain mismatch, obfuscated JavaScript, recent domain registration
• Risk: HIGH - Immediate credential theft
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain