Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19C61C1BD5282756B83479BB132A4BF276686F1D082CB21640BEB078CDBF4D23EC45459 |
|
CONTENT
ssdeep
|
48:n2VyiwTicNfOvZCbZVqi5epc/ZYHN9pJDqbsepklmxlsP5snkd/Q:no8pKmLbYDpJDqbsnIkdo |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cb3698626d632cb3 |
|
VISUAL
aHash
|
001c18387c7c7c3c |
|
VISUAL
dHash
|
31686b41c8c1e9f1 |
|
VISUAL
wHash
|
003c343c7e7c7c7c |
|
VISUAL
colorHash
|
10006000040 |
|
VISUAL
cropResistant
|
fffbe9fffe3effff,31686b41c8c1e9f1 |
• Threat: Cryptocurrency exchange phishing
• Target: USDT holders internationally
• Method: Fake exchange site promising high returns
• Exfil: Unknown, likely collects USDT transactions
• Indicators: Unrelated domain, suspicious promises, lack of official branding
• Risk: HIGH - Potential loss of USDT funds