Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1950344B051A9D93B41F361E577BA1F1E62E6D384D9020704A6F9C3FD4FDBE48DA220A1 |
|
CONTENT
ssdeep
|
384:sILTV8+zdUcz/slTbRMSCygUyD084mR8m9BoLhmko:sIt8+zd3/sE1WQ8ybko |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9be6e499a1a0e5c6 |
|
VISUAL
aHash
|
ff10001c1c1c1c18 |
|
VISUAL
dHash
|
4d6465f959793932 |
|
VISUAL
wHash
|
ff14103d3c3c3c3c |
|
VISUAL
colorHash
|
0f000000c00 |
|
VISUAL
cropResistant
|
20202020c0000000,4d6465f959793932 |
• Threat: Credential harvesting phishing targeting agent accounts
• Target: Bet365 agents
• Method: Fake agent registration form stealing account username, name, phone number, password, withdrawal password and bank payment details.
• Exfil: Likely sent to a backend controlled by the attacker.
• Indicators: Domain mismatch, agent registration form, unusual domain name
• Risk: HIGH - Credentials and payment details are at risk.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain