Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1DFB189B5D8849E231197C2E5B2356B9B32C19380EB070B7427F6939DFFC9DA8DC25294 |
|
CONTENT
ssdeep
|
48:nNV5mwNF8ho/N1CcwbN3m/brsjJXifCzYFMwdKnW98kz/oUWZY/jVUB14:nNVxNn110R2TQ9SqyzdKnW98kDoaBwO |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8966b972b6992699 |
|
VISUAL
aHash
|
00707a3800009bff |
|
VISUAL
dHash
|
8c92b262904312da |
|
VISUAL
wHash
|
0278faf84000dfff |
• Amenaza: Kit de phishing para robo de credenciales
• Objetivo: Usuarios de Netflix
• Método: Formulario falso que roba dirección de correo electrónico
• Exfil: Desconocido, probablemente un endpoint personalizado
• Indicadores: Hosting gratuito, marca Netflix, campo de entrada de correo electrónico
• Riesgo: ALTO - Robo inmediato de credenciales
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain