Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1045295F662C1AD2B932331D8F1D2F7CEF043620EDAC94A84B5BE07F552DACB64015969 |
|
CONTENT
ssdeep
|
384:Hw1FRo+1H1pd/cB3B7PdyC9N9FXWKeWaGoCggYCCgtNC33:Hw1voQH1ncNdoSNSGFYgNC3 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
aa35ca35ca35ca35 |
|
VISUAL
aHash
|
00000000000000ff |
|
VISUAL
dHash
|
0e0e091e1b1f1ec9 |
|
VISUAL
wHash
|
03070b0f0f0f0fff |
|
VISUAL
colorHash
|
00007000000 |
|
VISUAL
cropResistant
|
8d00c9c109c980c9,0e0e091f131b120f |
• Threat: Potential billing update scam - redirected via QR code service
• Target: AT&T customers in the USA
• Method: Requests users to verify billing information after being redirected from a QR code scan
• Exfil: Unknown; potential data harvesting via fake billing form
• Indicators: AT&T branding, request for billing verification, redirection from flowcode.com
• Risk: LOW - Requires user interaction, potential for credential theft if malicious link is used
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain