Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17DE1CB1BD65C36280FE102B47D11A3CD620E648C97668BDE7FFCD52C27A03954A769CD |
|
CONTENT
ssdeep
|
192:RleMTPowTqAt4wLypuYev9tNZIvyuKQXuE/ON1r:Z7owTqAt4wLypwt7IaXQXuHr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
a9863b3c248fd8f2 |
|
VISUAL
aHash
|
03036b03030b0303 |
|
VISUAL
dHash
|
2fcbabd79793530b |
|
VISUAL
wHash
|
070f7b73434b8b83 |
|
VISUAL
colorHash
|
31000400030 |
|
VISUAL
cropResistant
|
74f474f474747473,e4f0b1b4c968b0e0,c4a2942b2bada2c2,32e594e98b896816 |
โข Threat: Phishing
โข Target: Ndax users
โข Method: Impersonation via free hosting.
โข Exfil: Likely steals credentials via forms. Exfil method unknown.
โข Indicators: Free hosting, brand logo present.
โข Risk: High
The attacker likely intends to steal user credentials (username and password) by presenting a fake login form that mimics the appearance of Ndax.
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain