Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T193329726F318272432D68151F565C7DAB70142B6D3690B796EA9823EF84C7B489333DE |
|
CONTENT
ssdeep
|
192:chfmDT4kocAnwwKFdn6yJvktHVvwRKG+y62c0a7rR6qkGckxWBrVkwg:eo8kocJFB7yWpxg |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bdd678c25278872c |
|
VISUAL
aHash
|
feff1f8f3fff8181 |
|
VISUAL
dHash
|
cc707c0c7a743b3b |
|
VISUAL
wHash
|
7c7f0f07073f8181 |
|
VISUAL
colorHash
|
06000000380 |
|
VISUAL
cropResistant
|
cc707c0c7a743b3b,45452bd8c42b5521,45423194eca25045,ff7fdcd47ffcff7f |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.