Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12802CE315197B97B149796F2B73B6B66A2C18204E7238B04B3FE938D4BE6C05DD36720 |
|
CONTENT
ssdeep
|
96:TG21VUvV2nSMSOPbU03uYhtscvuEsmfvScx+8XFjhePxkPv8BG4IHdkf3ksm4hRG:S21+QfuewGd+8YoLx9a+k4H |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bc38c5c3333c9cb2 |
|
VISUAL
aHash
|
dfdf8f8387dfffff |
|
VISUAL
dHash
|
1b3a3c3b1b3c2f00 |
|
VISUAL
wHash
|
8b8f8781838f81fe |
|
VISUAL
colorHash
|
07402000200 |
|
VISUAL
cropResistant
|
1b3a3c3b1b3c2f00,3cfaea7eed079597 |
Fake Immediate Edge site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.