Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T160412299108E362B9623E1E0F60ABF07F1C684C7ED7ABE0094FE95D5C6D4F04E46B061 |
|
CONTENT
ssdeep
|
24:hnC/oLlie1ol3JAZcfWoy+97fef+O7b7ZIJKQqtIJBQffQksuQrkusrPC+ROtd1M:HAUoJJCcfWo7lO7BEmyRkprC+ROtXSZL |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8ce43399cc66b399 |
|
VISUAL
aHash
|
ffffdbdb18000000 |
|
VISUAL
dHash
|
96969696323004b1 |
|
VISUAL
wHash
|
fffffff318000000 |
|
VISUAL
colorHash
|
31000000e00 |
|
VISUAL
cropResistant
|
96969696323004b1 |
• Amenaza: Phishing
• Objetivo: Usuarios de Spotify
• Método: Recopilación de credenciales
• Exfil: Desconocido. Potencialmente a una base de datos controlada por el atacante.
• Indicadores: Alojamiento en GitHub Pages, marca Spotify, formulario de inicio de sesión
• Riesgo: ALTO
The attacker is using a fake login page that mirrors the look of Spotify's real login page to trick users into entering their login credentials.
Pages with identical visual appearance (based on perceptual hash)
Found 4 other scans for this domain