Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1E622CA3252841A3D921347ACF595F33560AAC748E5ABD926F3ED027717CAD49EC332D8 |
|
CONTENT
ssdeep
|
192:2YdlOPOYN1dMdHQnamSJGt1Qd+UbZBe4SrO6t1t3D353iVg+OsE9GR70N:XlOPO2gHQsi8I3t1tzpMg3hGC |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9c65de9bd0d47150 |
|
VISUAL
aHash
|
1f1f1f1f1f1f1f1f |
|
VISUAL
dHash
|
3036b6b6bc3e34b4 |
|
VISUAL
wHash
|
1f0307031f1f1f1f |
|
VISUAL
colorHash
|
16006008040 |
|
VISUAL
cropResistant
|
804c7c0c70780051,a28e71797284a482 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Malicious code is obfuscated using 66 techniques to evade detection by security scanners and make reverse engineering more difficult.
Drainer supports multiple blockchain networks and checks for high-value tokens on each chain before executing drain operations.
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain