Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19A42A6B2A0106B3B0273D2C57722237DE2A3818CD58615552BEE874F1DE7F82DD2A54B |
|
CONTENT
ssdeep
|
192:mXQ0VQ62L13uH644834MAi5GPnVVqOcVXEkzKOmU4iJ6a:l0F+j448341QETOmUKa |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
f1b7ce88b3308cc6 |
|
VISUAL
aHash
|
fffecfc7cfc84070 |
|
VISUAL
dHash
|
0e041c98989091c0 |
|
VISUAL
wHash
|
ffe0eec7ccc06060 |
|
VISUAL
colorHash
|
07c00018000 |
|
VISUAL
cropResistant
|
0e041c98989091c0 |
• Threat: Financial Scam/Investment Fraud
• Target: General Public
• Method: Deceptive landing page with obfuscated JS
• Exfil: Unknown backend
• Indicators: Obfuscated JS, vague corporate branding
• Risk: High
Uses deceptive marketing copy and obfuscated scripts to lure users into interacting with a fake platform.
Hidden forms capture input data sent to external servers.