Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1D20273EB5051AC7B4663C2FBB39557AD71A6C251E4370B00AAFB4F4E4BC0C99AC4921B |
|
CONTENT
ssdeep
|
192:YP9J0QDpzpYpJplpjwAUMTpw5nplyNApgUvALX2XVQK5B20TSZ/1:Y1V9w7fsAUMdwflIURvALMVT5B2h/1 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ed6d1292126d6d6c |
|
VISUAL
aHash
|
00dbd1d1dfffffff |
|
VISUAL
dHash
|
243333333c060c23 |
|
VISUAL
wHash
|
008181809effe7ff |
|
VISUAL
colorHash
|
07001200048 |
|
VISUAL
cropResistant
|
2d3333333c060c23,4008d0c4c4c40940,65428192828e8983 |
Fake OKX page designed to appear in search results and trick users into visiting. May redirect to credential harvesting pages, malware downloads, or serve as a trust-building step before requesting sensitive information.
Malicious code is obfuscated using 1 techniques to evade detection by security scanners and make reverse engineering more difficult.
Pages with identical visual appearance (based on perceptual hash)