Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1F641403010799E27415B85DDB1BAAB0A60C5C149CB9B07046BFC67FE1BD7C22E91A286 |
|
CONTENT
ssdeep
|
48:n7YLeWMJmc3YyeJL+I6NqH6kYnjZyhLQlwkG:nqdc3Y5JL+waNjWQli |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9dd2732cc897268d |
|
VISUAL
aHash
|
0000183c18000000 |
|
VISUAL
dHash
|
60ccb3b232336e93 |
|
VISUAL
wHash
|
3240787d3f010bff |
|
VISUAL
colorHash
|
07c00000000 |
|
VISUAL
cropResistant
|
92aeacc2e8e480a8,60ccb3b232336e93 |
• Threat: Credential Phishing
• Target: LinkedIn Users
• Method: Overlay form with Chinese text
• Exfil: Unknown
• Indicators: Overlay form, suspicious text, credential request
• Risk: High
A fake login form is displayed on top of a legitimate site. The goal is to collect login credentials.
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain