Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T11AF1AC5094C6B7BF04C792EBE7335FA977E08122D62A0E2516FD974F0F86C46E813298 |
|
CONTENT
ssdeep
|
96:nLFDSv5PRcggjtid6RGw4jsYi+QDYemoCj38rD8KyZNXyprMrunLu2d7J:JDSVRlg5Q6RGjo6pju8pZEhlLuc7J |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ed4d939292382dcd |
|
VISUAL
aHash
|
fff3d3f3f3c3c3e7 |
|
VISUAL
dHash
|
210326270616160c |
|
VISUAL
wHash
|
99f18191f381c3e7 |
|
VISUAL
colorHash
|
07200000007 |
|
VISUAL
cropResistant
|
210326270616160c,4c743c8cc3300963 |
• Amenaza: Phishing de airdrop de criptomonedas
• Objetivo: Usuarios de la blockchain de Flare
• Método: Sitio web falso que incita a reclamar un airdrop
• Exfil: Probablemente recolectando datos de usuario, detalles de billetera, o frases semilla
• Indicadores: Desajuste de dominio, suplantación de marca, señuelo de airdrop
• Riesgo: ALTO - Potencial de robo de criptomonedas o compromiso de cuenta
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain