Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1D831C2B660449A6B02C3B3D1FF217B2D72918289CE9A2B1414F853EF2FD5D0DCC56483 |
|
CONTENT
ssdeep
|
24:hR/CNWdUylLB6OaI225Jg9vwNTlnMzqLB0FwEGopHwQGSgTocVG2U3upX4G:TdUxIJDgInNSBGopQQGSg5VGR04G |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cc3333ccb332cc33 |
|
VISUAL
aHash
|
8100003c38380000 |
|
VISUAL
dHash
|
03210070b2b22000 |
|
VISUAL
wHash
|
81803c3cfcfcc0c0 |
|
VISUAL
colorHash
|
38000038002 |
|
VISUAL
cropResistant
|
8200823232320202,03210070b2b22000 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.