Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19512C6B06021196B81DBC2FAE272A2026358D544E6038F66FDF9C7CC0DEBD38EC66565 |
|
CONTENT
ssdeep
|
96:EsOjzqxScrieSSWjuedkqeDCHr92aqMZ1jX90gUkZ7c6ttFq6APy/W71cmd9KeaT:s4KY07LOK/tVzW72yayb5aO+xX08Sq |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
99e2731d8c214ddd |
|
VISUAL
aHash
|
427fff7f7e180000 |
|
VISUAL
dHash
|
96dcf2b2b2329818 |
|
VISUAL
wHash
|
427fff7f7e180000 |
|
VISUAL
colorHash
|
0b007000040 |
|
VISUAL
cropResistant
|
9cf8f0b2b2b0b272,d4c0c2ec98c4c0dc,96dcf2b2b2329818 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Found 2 other scans for this domain