Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1999140215025AE3351E386E4B2D9EB6362EFC228CF80286812FCC79C0BE5C55B67B954 |
|
CONTENT
ssdeep
|
96:uQ/OyWIVgExhqpE9tFMhTFk6aMhTtk6Yt:uQ/O4gihyE9tFMhTFk6aMhTtk6k |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9999996666668b33 |
|
VISUAL
aHash
|
1818181800000000 |
|
VISUAL
dHash
|
b2b2b2b24c200000 |
|
VISUAL
wHash
|
3c3c3c3c00000000 |
|
VISUAL
colorHash
|
07007000000 |
|
VISUAL
cropResistant
|
a2a2e2a296a89696,b2b2b2b24c200000 |
• Ameaça: Phishing de credenciais
• Alvo: Usuários não especificados
• Método: Personificação através de um formulário de login genérico.
• Exfil: Credenciais enviadas para o URL de destino.
• Indicadores: Design genérico, ação de formulário suspeita.
• Risco: Alto
The attacker aims to steal user credentials by presenting a fake login form that mimics a legitimate service. Users who enter their information unknowingly provide their credentials to the attacker.
Pages with identical visual appearance (based on perceptual hash)
Found 3 other scans for this domain