Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A5E2EE709062A83702E7D2C0A279275BB3D2C349CE934B5563FC87ACAFDBC51ED26654 |
|
CONTENT
ssdeep
|
768:m3jlAtb+iAs6s6O8qIapgJVpcA9Linn2F:mTXX6IrYnn2F |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c5039f0ff4720d3a |
|
VISUAL
aHash
|
ff7b00400000ffff |
|
VISUAL
dHash
|
47dad384a672b122 |
|
VISUAL
wHash
|
ff7b00600000ffff |
|
VISUAL
colorHash
|
07003008080 |
|
VISUAL
cropResistant
|
968c4300dad2d393,16160b0b6a7336d4,adb94fc6ded4c6c4,b8ec71e1393c665a,92929a92961595d6,3a3aecccaeb0b222,72cc8e8eb287a7b9,0000c83227322236,000101a1c9c9c121,d2d3968484b25233,b575632d1d195561 |
• Amenaza: Fraude de inversión / Phishing
• Objetivo: Schroders / Inversores potenciales
• Método: Suplantación de marca mediante fotografías robadas
• Exfil: Envío de formularios / Robo de credenciales
• Indicadores: Uso de imágenes corporativas de Schroders en un sitio falso
• Riesgo: Crítico
Uses deceptive branding to lure victims into 'investing' in a fake crypto platform.
Likely captures user login data via fake registration forms.