Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B0635BE8F500F523A67300D760AF1952B339561BEA0E0950F36CEEDA77F48566137ACA |
|
CONTENT
ssdeep
|
768:Ogfk/z2q7LU7WVhho1MUxBLXPTT2S6Mq6zTCGE3BtrTP+Q4cnjMGI9Uf4zX//gyy:ihhIMGL7yW7IBZqcnze//dQV |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9212e8ec6cece19e |
|
VISUAL
aHash
|
ff0c0c0000ffffff |
|
VISUAL
dHash
|
3cd8f8fc6d060c16 |
|
VISUAL
wHash
|
170c0c0000ffffff |
|
VISUAL
colorHash
|
060000001c0 |
|
VISUAL
cropResistant
|
00202028282400b4,d8f8f8ec66060c16,f8d878d8f8fcec6c |
• Ameaça: Phishing de geração de leads
• Alvo: Devedores de impostos
• Método: Reivindicações urgentes de alívio fiscal
• Exfil: Envio de formulário para terceiros não autorizados
• Indicadores: JS ofuscado, domínio genérico
• Risco: Alto
The site collects user data under the guise of tax debt resolution, likely to sell this information to predatory third-party services.
Utilizes fake trust signals (media logos) to appear as a legitimate financial entity.
Pages with identical visual appearance (based on perceptual hash)
Found 10 other scans for this domain