Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1AEC2207C20EC15B7903B8CCAB824395DA871934BCF26C8976AAD53D63FD2811B550E7B |
|
CONTENT
ssdeep
|
384:DybgbzkDBuDBP8pYy5E2zu7TVBq9XqLTV5tDUTghoVupJVCzN:DybgbzT8pYytIqqLTV5tD+gqAGN |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9616bb391cb97911 |
|
VISUAL
aHash
|
0e060e1600ffffff |
|
VISUAL
dHash
|
6cecece46495080e |
|
VISUAL
wHash
|
0c06041404ffffff |
• Threat: Brand impersonation phishing
• Target: Individuals interested in TikTok Shop
• Method: Using the TikTok brand to lure users to a fake website
• Exfil: Unknown, likely data harvesting if user interacts with the fake site
• Indicators: Domain name does not match official brand, recently created domain, misuse of brand assets
• Risk: HIGH - Could lead to credential theft or malware installation if the user clicks on links or enters information.
Pages with identical visual appearance (based on perceptual hash)