Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12A2518A0A30458BFB24183E8AAE5158132A171EDFB431768F5E847DF7E52CD5C818EE7 |
|
CONTENT
ssdeep
|
6144:GXPpQQbmpQCbmpQCbmpQCbmpQCbmpQCbmpQCbmpQCbmpQY:GxQQkQCkQCkQCkQCkQCkQCkQCkQY |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
dd99995919991959 |
|
VISUAL
aHash
|
18ffffff0000efff |
|
VISUAL
dHash
|
b204043c30324c00 |
|
VISUAL
wHash
|
00ffffff000000ff |
|
VISUAL
colorHash
|
07000000c00 |
|
VISUAL
cropResistant
|
b204043c30324c00,0001415159515181,0040405656564800,0000883232cc4000 |
• Amenaza: Phishing
• Objetivo: Usuarios de Correos
• Método: Suplantación de identidad a través de un sitio web similar.
• Exfil: Información de pago o credenciales.
• Indicadores: Coincidencia de dominio, urgencia, solicitud de pago.
• Riesgo: Alto
The attacker attempts to impersonate the Correos brand to trick users into providing payment information. The user is lead to believe that they have an outstanding shipping fee.
The use of urgency and the promise of package delivery create a sense of urgency, and the user is more likely to click on the button and provide their information.
Found 1 other scan for this domain