Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T161A2BD72C04120AF1936EC93FB35BB5AD1C3E32EC931D41096648F5EAED6EE0536649B |
|
CONTENT
ssdeep
|
192:IfUut0MRJ4jSL7chyte4JirHTVOMwYdUKmmMJh7tb2ZStIvqKxf+LVdCrGRVt2z0:QkKfVu+qNGlK5ArQCOz7LD91k |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3333166cc99cccc |
|
VISUAL
aHash
|
e7c3ffe7e7e7e7e7 |
|
VISUAL
dHash
|
cc4d100c4d4d4d0c |
|
VISUAL
wHash
|
42c3c3c3e7c3c3c3 |
|
VISUAL
colorHash
|
07000000006 |
|
VISUAL
cropResistant
|
cc4d100c4d4d4d0c,9d6dc98c8ada58e3 |
• Threat: Brand impersonation phishing
• Target: Shopee users
• Method: Using a fake domain to impersonate Shopee
• Exfil: Unknown - data exfiltration target could not be confirmed from the screenshot
• Indicators: Domain mismatch, recent domain registration, JavaScript obfuscation, JavaScript form submission
• Risk: HIGH - Brand impersonation aimed at data theft or fraud.
Found 4 other scans for this domain