Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T16671513390002E1F2A72D194BFECB70116D0A441D59E2A8471EC23DFAAE5EE7F487359 |
|
CONTENT
ssdeep
|
48:T2qbpBAbbAuYpdLpctRo6wnbTlaP0s5CxvClI6oIn66f2bbi+LnuW6kMI5:T1AbbAuS8GeC4lISnKiU8b0 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
803b5d67272e8d8d |
|
VISUAL
aHash
|
086c7d647c7c7c7c |
|
VISUAL
dHash
|
d09cb18da9a4a4a4 |
|
VISUAL
wHash
|
006c5d647c7c7c7c |
|
VISUAL
colorHash
|
07000038000 |
|
VISUAL
cropResistant
|
d09cb18da9a4a4a4,f0c6c0c0c0c0c0c0 |
• Amenaza: Phishing de credenciales
• Objetivo: Usuarios de Adobe PDF (probablemente genérico)
• Método: Se pide al usuario que introduzca su correo electrónico y contraseña.
• Exfil: No especificado
• Indicadores: Dominio no relacionado, solicitud de contraseña, formularios.
• Riesgo: ALTO
The attacker aims to steal user credentials (email and password) by impersonating a common service - in this case PDF documents. They trick users into entering their credentials into a fake form.
The attacker uses social engineering techniques, such as a convincing login prompt, to lure the victim into divulging sensitive information.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain