Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T11FD392D55618138CA047C96DFF2FFE05131FB1AABA5586802A8EC26C96CF8D2F71752C |
|
CONTENT
ssdeep
|
1536:kq0RQ7He7ivYLarLO+OxVYlFsR8MLqczOFsR8MLqcev:T0RQ7H8PaO7hFk |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b83bc3c3c6363436 |
|
VISUAL
aHash
|
ffd987879fcfdfdf |
|
VISUAL
dHash
|
4b333d3f331f3737 |
|
VISUAL
wHash
|
ff818787c3838393 |
|
VISUAL
colorHash
|
07008000c00 |
|
VISUAL
cropResistant
|
4b333d3f331f3737 |
• Ameaça: Phishing
• Alvo: Usuários da Trezor
• Método: Falsificação de domínio via serviço de hospedagem gratuito.
• Exfil: JavaScript ofuscado pode extrair credenciais do usuário.
• Indicadores: Domínio incompatível, hospedagem gratuita, javascript ofuscado.
• Risco: ALTO
The site attempts to deceive users into providing their Trezor credentials or downloading malware that will steal their information.
The site could potentially trick users into downloading a malicious file.
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain