Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17FF1A80BF76C37394BA301697DA842EEF72F44BCA3511ED86978812D76816C983731D1 |
|
CONTENT
ssdeep
|
96:TvdMbf7mIG8MHXQ4GiSls31Nn+16wIMWGefKUhPQ66kQC7zqkEpC6GdeAAA79WsF:efVF4ng6ZnPSfrHALI5aqJe9noo9 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8598dab9ed253856 |
|
VISUAL
aHash
|
ff3e2c323b2f26f0 |
|
VISUAL
dHash
|
e0ccccc2c2cecce0 |
|
VISUAL
wHash
|
7f3c2c2a3b2f2630 |
|
VISUAL
colorHash
|
06c00000400 |
|
VISUAL
cropResistant
|
e0ccccc2c2cecce0,c4a2ca26329aa284,2532320fc8c8c880,ff7f7f7ff37779d3,0607040180800000,0707070707070707,5555454149452317,c8f8fcfc7c740209 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.