Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1C4C20A513181BC2F076783CA9A92572FE7DAD355FD33AB0562E9CB1D1AD9C02CD72208 |
|
CONTENT
ssdeep
|
384:Y0aLWeEndV1zK0Sz15XXavDqTbvCkIacybFHM5Pm:jaLjq9k5XqbObKkIZyy1m |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8303f86369f867d1 |
|
VISUAL
aHash
|
000000000001ffff |
|
VISUAL
dHash
|
dffdefffcfef3010 |
|
VISUAL
wHash
|
000f0303270fffff |
|
VISUAL
colorHash
|
06c01000040 |
|
VISUAL
cropResistant
|
fdedf7fbcffd3030,f5686896b4a4a5b7,4c48c2e2ad85c46b,bcfe9ae8ec9ebabe,ddffdde7fffbc7ff |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.