Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T111D1216060584C3B92A7CAD877A8B71A72C6C209CF530644A7F8836C1BDBC93FE55966 |
|
CONTENT
ssdeep
|
96:nrbcR2g1oh/1V1QhNq1bLGwuxfgsa3pTrXO1EcRZX:rbcR2jAkJMD |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b031c7cc7ce39338 |
|
VISUAL
aHash
|
ffc7878783ffffff |
|
VISUAL
dHash
|
041e1a1f3b98020c |
|
VISUAL
wHash
|
f1818181016fffe7 |
|
VISUAL
colorHash
|
06000018080 |
|
VISUAL
cropResistant
|
041e1a1f3b98020c,e18491d18db07aed |
• Amenaza: Legítimo
• Objetivo: Usuarios de Aruba
• Método: Inicio de sesión de webmail
• Exfil: -
• Indicadores: Dominio legítimo de Aruba, logotipo de la marca.
• Riesgo: Bajo
The site is designed to trick users into entering their Aruba webmail credentials.
Pages with identical visual appearance (based on perceptual hash)