Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1DFB189B5D8849E231197C2E5B2356B9B32C19380EB070B7427F6939DFFC9DA8DC25294 |
|
CONTENT
ssdeep
|
48:nNV5mwNF8ho/N1CcwbN3m/brsjJXifCzYFMwdKnW98kz/oUWZY/jVUB14:nNVxNn110R2TQ9SqyzdKnW98kDoaBwO |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8966b972b6992699 |
|
VISUAL
aHash
|
00707a3800009bff |
|
VISUAL
dHash
|
8c92b262904312da |
|
VISUAL
wHash
|
0278faf84000dfff |
• Ameaça: Kit de phishing para roubo de credenciais
• Alvo: Usuários da Netflix
• Método: Formulário falso que rouba endereço de e-mail
• Exfil: Desconhecido, provavelmente um endpoint personalizado
• Indicadores: Hospedagem gratuita, marca Netflix, campo de entrada de e-mail
• Risco: ALTO - Roubo imediato de credenciais
Pages with identical visual appearance (based on perceptual hash)
Found 2 other scans for this domain