Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T160D1F0B19008A93757A3C3EDF7B1A30BBB82C585C987164A91F6D35D2FD3EA0CC16252 |
|
CONTENT
ssdeep
|
96:GgKHUnoGyPs44mGjZzmMK4yYeywq0w2mzClPhUbTuGWVBrGobuicaRO:GgenFbOFPpcTBrls |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
fe7e5ca161616984 |
|
VISUAL
aHash
|
809c8080ffffffff |
|
VISUAL
dHash
|
1b38340320202024 |
|
VISUAL
wHash
|
80808080c3c3cfc7 |
|
VISUAL
colorHash
|
070020001c0 |
|
VISUAL
cropResistant
|
1b38340320202024 |
• Ameaça: Falsificação
• Alvo: Usuários do Facebook
• Método: Imitação do Facebook, provavelmente para roubar credenciais ou distribuir malware.
• Exfil: https://facebooksocialpage.blogspot.com/search
• Indicadores: Domínio Blogspot, conteúdo genérico, falta de marca oficial.
• Risco: Moderado
The site attempts to mimic Facebook to deceive users. Its main purpose is to steal information. The low effort suggests it's a preparation for a phishing campaign
The site could be injected with malicious code that redirects to other fraudulent websites or attempts to download malware.
Pages with identical visual appearance (based on perceptual hash)