Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T13AE23F3A10419E3F119BC6CAB7707B1EE2D6D68DCA531A1267F8831D0BD6E90CD36D91 |
|
CONTENT
ssdeep
|
384:76EPNT5UByr+IGEiP+kPDC8A0FDzeBZUZu0Iq:7JPl5R+IPl8AiiBZUAq |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c342bc49c3b667a3 |
|
VISUAL
aHash
|
000020342c20ffff |
|
VISUAL
dHash
|
d0b1ccccc9c82e2a |
|
VISUAL
wHash
|
0018247e7c20ffff |
|
VISUAL
colorHash
|
1a2000080c0 |
|
VISUAL
cropResistant
|
f0eaf2caee9a9a61,bf9eb6f1f2c6c4c8,402c0d2aaaaa2a2a,c8b0e1ccccc9c8c8 |
• Ameaça: Phishing
• Alvo: Usuários de plataformas de criptomoedas
• Método: Coleta de informações pessoais por meio de um formulário de registro falso
• Exfil: Desconhecido
• Indicadores: Domínio suspeito, formulário, tática de urgência, ofuscação
• Risco: Alto
The attacker is attempting to collect user credentials (email, password) by presenting a fake login or registration form. The user enters their information, which is then sent to the attacker.
Pages with identical visual appearance (based on perceptual hash)