Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1E0D220B1915AAA3B02F392E1AB752B5FB3C5E2C8D943070526FC875D8FCFE84E921051 |
|
CONTENT
ssdeep
|
384:rQLXR8g+VWWiTg1deHCygUyD084mR8m9vP6zK:rQV8g+VNi81dei1WQ8yQK |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e86a3b1f1e1ac8e |
|
VISUAL
aHash
|
ff1410383c102020 |
|
VISUAL
dHash
|
4c6d657071704840 |
|
VISUAL
wHash
|
ff04103f3e3e2020 |
|
VISUAL
colorHash
|
0f000000e00 |
|
VISUAL
cropResistant
|
4c6d657071704840 |
• Threat: Credential harvesting phishing targeting Bet365 users
• Target: Users of the Bet365 online gambling platform
• Method: Fake login page to steal usernames and passwords
• Exfil: Likely to a remote server controlled by the attacker (details unavailable from screenshot)
• Indicators: Domain name '0365jj.com' does not match official Bet365 domain, presence of login form.
• Risk: HIGH - Immediate risk of account compromise.
Pages with identical visual appearance (based on perceptual hash)
Found 6 other scans for this domain