Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12DD2FF4272486A55C2F345DC641069806283EB4FC97487709AAD0E3F2BE36B577E9F3E |
|
CONTENT
ssdeep
|
768:hdwuDyKpQJtgBr2X623lgz9k36ndEBlxxC:hdwkpQJtAr2X64ak36ndEBlxA |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ebadd6948c52a561 |
|
VISUAL
aHash
|
ffe3e1c1c1c0e0fc |
|
VISUAL
dHash
|
000b0b0b0b090919 |
|
VISUAL
wHash
|
ffe1e1c1c1c0c0fc |
• Threat: Brand impersonation phishing
• Target: Metamask users
• Method: Misleading website using Metamask name to potentially distribute malware or scams later
• Exfil: No data exfiltration visible in the image but likely used to gather information.
• Indicators: Free hosting, subdomain impersonating Metamask, mismatching URL
• Risk: HIGH - Potential for future credential theft or malware distribution
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain