Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1C241A676604569B35287D2F1B770A71FBB828286DF67220257F8C3AC5AC6C58DE01051 |
|
CONTENT
ssdeep
|
24:n/CoAfDflGDeHhd/evMwvg452TpmBcTitErsFpMuHNVNEIQrZAwpZA4VZSHaNHN2:nmr9AeHhI5escgu+pPtvGow6Kyt1 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
f3c9cc2699662699 |
|
VISUAL
aHash
|
ffffe7effee6e4fc |
|
VISUAL
dHash
|
28280c08284c4c30 |
|
VISUAL
wHash
|
f6fae0e8e0e0e0d8 |
|
VISUAL
colorHash
|
070010001c0 |
|
VISUAL
cropResistant
|
28280c08284c4c30 |
• Ameaça: Phishing
• Alvo: Usuários desavisados
• Método: Coleta de credenciais
• Exfil: https://digitalnomad.saithaimio.enterprises/k2mCBPyx3AEP!FU8T/$
• Indicadores: Ação de formulário suspeita, design genérico.
• Risco: ALTO
The attacker attempts to steal user credentials (email) by impersonating a secure document access portal.
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain