Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T16E4123B92016893F076BC3C22D597A1D3AC5B24CDD8A559101F983E89FC7CC6C89B49A |
|
CONTENT
ssdeep
|
48:nX6NmTNMq2nc3L7B22gT736tkc++C9ZSAsWBPRr:nf2ncPB2KtKbS0PRr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
f35e8c9951ac905b |
|
VISUAL
aHash
|
fce4e0e0e0e9f36e |
|
VISUAL
dHash
|
1008084c095bc7dc |
|
VISUAL
wHash
|
fce0e0e0e089f766 |
|
VISUAL
colorHash
|
07006000400 |
|
VISUAL
cropResistant
|
1008084c095bc7dc |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 66 techniques to evade detection by security scanners and make reverse engineering more difficult.