Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10E41B96670A4F41645C7E2F3BB630A53A6B18101D7B3170061F6D2694FF5D18CC6768F |
|
CONTENT
ssdeep
|
48:TMMTMx1pbSIIqzFxYLnNIKqfyyLN1e7pIKb:TM0Q1pWqzFiLnNIKqtLN1e7pIKb |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c1c991cdb971e2b8 |
|
VISUAL
aHash
|
6b79e0c098b02627 |
|
VISUAL
dHash
|
d2d3890233624c4e |
|
VISUAL
wHash
|
7b79e0e0d8b03627 |
|
VISUAL
colorHash
|
12401008000 |
|
VISUAL
cropResistant
|
e766ace8eacad4f1,b2b376f2aa7ce4fc,27d4e0f8c05818b9,bcb4b272321a30a3,d2d3890233624c4e |
• Ameaça: Phishing
• Alvo: Usuários da Netflix
• Método: Imitação por meio de um site semelhante em uma plataforma de hospedagem gratuita.
• Exfil: Provavelmente rouba credenciais de login (e-mail e senha).
• Indicadores: Logotipo da Netflix em hospedagem gratuita.
• Risco: Alto
The attacker aims to steal user credentials (email and password) by making the website look like a legitimate Netflix login page.
Pages with identical visual appearance (based on perceptual hash)
Found 3 other scans for this domain