Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17E3286B238515D22606F51DE998F974F9282E396CF424FD1D2F4822A5FF1C90FE472A8 |
|
CONTENT
ssdeep
|
96:TgJWtJ5p5W4QkQC7JXntEGvEhl8jrH2Fpqw+etOmqeMHSIIfII1IIoIIOI67DmBK:cYJjbZS8ncl6elvAY7GX92gtpV1A0iIu |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b435c3ce9c988bc3 |
|
VISUAL
aHash
|
bfc3c383dfffffff |
|
VISUAL
dHash
|
238e1e3616303c18 |
|
VISUAL
wHash
|
9f000083838f9fff |
|
VISUAL
colorHash
|
07000030000 |
|
VISUAL
cropResistant
|
238e1e3616303c18,13e4e81340a6d8d4 |
• Ameaça: Phishing
• Alvo: Usuários de amendes.gouv.fr
• Método: Personificação via site falso
• Exfil: ./infoz/otp.php
• Indicadores: Incompatibilidade de domínio, formulário presente
• Risco: Alto
The site attempts to steal payment information through a form on the fake website. The user is prompted to 'authenticate' with their bank.
Pages with identical visual appearance (based on perceptual hash)
Found 3 other scans for this domain