Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A5E2EE709062A83702E7D2C0A279275BB3D2C349CE934B5563FC87ACAFDBC51ED26654 |
|
CONTENT
ssdeep
|
768:m3jlAtb+iAs6s6O8qIapgJVpcA9Linn2F:mTXX6IrYnn2F |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c5039f0ff4720d3a |
|
VISUAL
aHash
|
ff7b00400000ffff |
|
VISUAL
dHash
|
47dad384a672b122 |
|
VISUAL
wHash
|
ff7b00600000ffff |
|
VISUAL
colorHash
|
07003008080 |
|
VISUAL
cropResistant
|
968c4300dad2d393,16160b0b6a7336d4,adb94fc6ded4c6c4,b8ec71e1393c665a,92929a92961595d6,3a3aecccaeb0b222,72cc8e8eb287a7b9,0000c83227322236,000101a1c9c9c121,d2d3968484b25233,b575632d1d195561 |
• Threat: Investment Fraud / Phishing
• Target: Schroders / Potential investors
• Method: Brand hijacking using stolen photography
• Exfil: Form submission / Credential harvesting
• Indicators: Use of Schroders corporate images on a fake investment site
• Risk: Critical
Uses deceptive branding to lure victims into 'investing' in a fake crypto platform.
Likely captures user login data via fake registration forms.