Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T11BF1752211686D3B911343C8F392ABBE62C7C241CE452A0586F947AD0FF7DD4EE6B05A |
|
CONTENT
ssdeep
|
96:n7ThzTiiwhYWCKXBBJqmeImJ1kHUXixBE+1EnuN1zQyHCHlgR61rBxJ5exEIMH1R:dBv91sdBEwEuNuHvFeCIk1Tt |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
92966d69c36992c7 |
|
VISUAL
aHash
|
00043e2e3e0e0000 |
|
VISUAL
dHash
|
d5acececccdcb3b8 |
|
VISUAL
wHash
|
645e7e7f7e1e0800 |
|
VISUAL
colorHash
|
31400007000 |
|
VISUAL
cropResistant
|
23239c3335710dcc,d5acececccdcb3b8 |
• Threat: Phishing
• Target: Pedágio Digital users
• Method: Impersonation via free hosting.
• Exfil: debitos.html
• Indicators: Free hosting, brand logo, form actions.
• Risk: High
The attacker is trying to steal user's plate number by creating a fake Pedágio Digital login page.
The form submit to a specific file.
Pages with identical visual appearance (based on perceptual hash)
Found 3 other scans for this domain