Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T11C712160C026412F918BD594FBD0231C53F9C24FC342A225B1FE936D66F5DEAD85E358 |
|
CONTENT
ssdeep
|
48:rXJSpPLni4QcmfXjQxCmYDfGH+zVTh1hvejDxBuIX4GAfjvag4gb:rXQJKPiCJB9PvSNVX4GA+gLb |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
802a2a2a2a002a80 |
|
VISUAL
aHash
|
00ffffffffffff00 |
|
VISUAL
dHash
|
8000808080800080 |
|
VISUAL
wHash
|
003c424242427e00 |
• Threat: Brand impersonation phishing
• Target: Microsoft users
• Method: Impersonating Microsoft support on a fake domain
• Exfil: Unknown, likely attempting to collect sensitive information later
• Indicators: Mismatched domain (microsoft.authorised-support.com vs microsoft.com)
• Risk: HIGH - Potential for credential theft or malware distribution
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain