Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T15313733911519EBF1183D2F4F776AB7BB298CB40C527DA46E2F8836A0FC6C45CE61264 |
|
CONTENT
ssdeep
|
768:rs2Y+BR71df1d6hk7A3kdzt6de6ASgvdk:geBR71df1d6h53qzt6NGdk |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
d216e9e93c97b441 |
|
VISUAL
aHash
|
0000040400ffffff |
|
VISUAL
dHash
|
c6ccecaca53a0333 |
|
VISUAL
wHash
|
0004161450ffffff |
|
VISUAL
colorHash
|
1b203010000 |
|
VISUAL
cropResistant
|
808080c0c0808080,80a080b030b080a0,808080f070808080,a800acecaca88080,004a3594ce8a2180,c433330b33033333,d6ccccecececa4a3,1733713171793974 |
• Ameaça: Phishing
• Alvo: Investidores
• Método: Impersonação e Engenharia Social
• Exfil: validation/thankyou.php (Potencial PII)
• Indicadores: Domínio recente, Promessas de altos retornos, Formulário
• Risco: ALTO
The site impersonates a financial service to collect personal and financial information through a registration form, aiming to steal the victim's money.
Exploiting greed and urgency to create a convincing scam, leading users to believe the offer is legitimate.
Pages with identical visual appearance (based on perceptual hash)