Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T135C16406F605232F0BDA031D7D64A3FEB3528095E32D0FD52991822F99E5656C936CDB |
|
CONTENT
ssdeep
|
96:nj0XfPuXAs0R0tsZkCqaCS9VQYOAjs7YTAXSzlrobE8HvyPth8eX+FZb:ufwz0HeaC8VNPA7QLx0b7aFMF5 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ceb031462739bcce |
|
VISUAL
aHash
|
007eff813c383838 |
|
VISUAL
dHash
|
19c8717161616161 |
|
VISUAL
wHash
|
80ffff813c383838 |
|
VISUAL
colorHash
|
38000e00000 |
|
VISUAL
cropResistant
|
19c8f17161616161 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.