Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12FC1A73191209DB38163D6E0B6E9B75B71C683AACB05060592DCA35D0FEBD85ED311E4 |
|
CONTENT
ssdeep
|
96:gc2ET3hZizjHsdFREA9I1/VC3VaDjtRbUmKXvDtcHLZQ5h/wD0u8mQ8vrS3eeK5T:OM3hZ6H+REA+1/VCIjjbfKcHLZQ/QyKN |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3734c4c7673584c |
|
VISUAL
aHash
|
00ffffe7e7ffffff |
|
VISUAL
dHash
|
0808324c4c300000 |
|
VISUAL
wHash
|
00ecfce4070f0f0f |
|
VISUAL
colorHash
|
070000001c0 |
|
VISUAL
cropResistant
|
0c28324c0c100000,0000004040400080 |
• Threat: Potential credential harvesting, but more likely legitimate.
• Target: Users of Microsoft OneDrive.
• Method: Prompts for email to verify access to a shared PDF.
• Exfil: Not apparent, assumed data will be used to grant access.
• Indicators: Standard Microsoft branding, minimal technical red flags.
• Risk: LOW - Requires email entry, but site appears legitimate.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain