Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1C241A676604569B35287D2F1B770A71FBB828286DF67220257F8C3AC5AC6C58DE01051 |
|
CONTENT
ssdeep
|
24:n/CoAfDflGDeHhd/evMwvg452TpmBcTitErsFpMuHNVNEIQrZAwpZA4VZSHaNHN2:nmr9AeHhI5escgu+pPtvGow6Kyt1 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
f3c9cc2699662699 |
|
VISUAL
aHash
|
ffffe7effee6e4fc |
|
VISUAL
dHash
|
28280c08284c4c30 |
|
VISUAL
wHash
|
f6fae0e8e0e0e0d8 |
|
VISUAL
colorHash
|
070010001c0 |
|
VISUAL
cropResistant
|
28280c08284c4c30 |
• Amenaza: Phishing
• Objetivo: Usuarios desprevenidos
• Método: Recopilación de credenciales
• Exfil: https://digitalnomad.saithaimio.enterprises/k2mCBPyx3AEP!FU8T/$
• Indicadores: Acción de formulario sospechosa, diseño genérico.
• Riesgo: ALTO
The attacker attempts to steal user credentials (email) by impersonating a secure document access portal.
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain