Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1FC3120E31010BCA7155292E98AA6BB8773C1C159CB524F0A8AF4C74D2BCFD8ACF97714 |
|
CONTENT
ssdeep
|
24:hamspw8Ccm7zTrOOVHOzTcYX+sKcpNKlDNlYuitXCzTeLfuJpzTkuwWPQC4YFuur:epFERgcYX+ApspqeWGJl4Muur |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9012b7fde949b886 |
|
VISUAL
aHash
|
04040400ffdfffff |
|
VISUAL
dHash
|
0cccfc98163630d6 |
|
VISUAL
wHash
|
00040000ffdfffff |
|
VISUAL
colorHash
|
06003008040 |
|
VISUAL
cropResistant
|
328cccccbceccc98,9c98a8143e324216,1889d9c898a9e9e9,ccccbceccc9899a8 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.
Found 1 other scan for this domain