Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T11A7286743044F83301A3E1D9537F0B5F72E24A6ACD67424A8AF4A36D5FE6C89CCA6761 |
|
CONTENT
ssdeep
|
384:OT1Qs8RrlTYF1fCBVGRvu/1aAWj2nvUwXNAfLwUWAuYx6jomrYZJp2/R2vYtF+L:calk3agl2vUwXNAzwUWAyWwR2vYt4L |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b38966669931e6cc |
|
VISUAL
aHash
|
fb25bdddfda4e6db |
|
VISUAL
dHash
|
108c2a5a324d4c32 |
|
VISUAL
wHash
|
a641b9ad7de4a452 |
|
VISUAL
colorHash
|
07000000038 |
|
VISUAL
cropResistant
|
108c2a5a324d4c32 |
• Threat: Phishing
• Target: Roblox users
• Method: Impersonation and Robux generator scam
• Exfil: Unknown, likely stealing credentials or other account data.
• Indicators: Unrelated domain, username form, and offers free Robux.
• Risk: HIGH
The site attempts to steal a user's Roblox username to then gain access to the account, likely through brute force or social engineering.
The site could possibly download or redirect a user to a malware download.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain