Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A8819727A90CA82F4B8240F5A871729DC60B088FE441C99D9BE4C4ED53FDBD981F6997 |
|
CONTENT
ssdeep
|
96:DHRHIH6TPf+ylw/Fz/2Hqt6iDzFO/IVFGmON1r:jRHIH6TP/wtz/iqt6iDlxON1r |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
a9863b3c248fd8f2 |
|
VISUAL
aHash
|
03036b03030b0303 |
|
VISUAL
dHash
|
2fcbabd79793530b |
|
VISUAL
wHash
|
070f7b73434b8b83 |
|
VISUAL
colorHash
|
31000400030 |
|
VISUAL
cropResistant
|
74f474f474747473,e4f0b1b4c968b0e0,c4a2942b2bada2c2,32e594e98b896816 |
• Ameaça: Phishing
• Alvo: Usuários da Ndax
• Método: Personificação via hospedagem gratuita.
• Exfil: Desconhecido
• Indicadores: Hospedagem gratuita, logotipo da marca em domínio suspeito, ofuscação.
• Risco: ALTO
The attacker likely aims to steal user credentials by creating a convincing fake Ndax login page, hosted on a free platform.
Pages with identical visual appearance (based on perceptual hash)