Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1AEB291B1031AAF610252ABE8336B67BE5099CECAED530D5452F6873C65C0EBEFE04517 |
|
CONTENT
ssdeep
|
192:dNnYxn++A76jQv1QTKW/hKN/bonMCbCuWv9vnxtlsvvTvSoJGxYr/vvBvIIhvYvi:cjfnMCbC72JLJdLPTxacR |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ee9193649966c738 |
|
VISUAL
aHash
|
ffffb7f393f18187 |
|
VISUAL
dHash
|
64386d653747273e |
|
VISUAL
wHash
|
bfff919181b18183 |
|
VISUAL
colorHash
|
060010000c8 |
|
VISUAL
cropResistant
|
64386d653747273e,a2c0c6a6872763e3,399981a9a981a90b |
• Threat: Cryptocurrency wallet phishing kit
• Target: Trust Wallet users, likely Chinese-speaking users
• Method: Impersonating Trust Wallet to deceive users into providing sensitive information (not visible in the screenshot but implied by the branding)
• Exfil: Likely credential harvesting or seed phrase theft (not visible in the screenshot but implied by the branding)
• Indicators: Misspelled domain name, domain not matching official brand, Chinese language content
• Risk: HIGH - Potential cryptocurrency theft and sensitive information compromise