Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1C75271B66044397B40C386D3E7312F9AF7E48360D69B172925F983485BD2D4FED22B16 |
|
CONTENT
ssdeep
|
192:o+NC3HYFImE+mkTi2x8EjdUioPwJ6V5KR5Dl1udPuor8Z9X1Vu1jp/:F4oFIb+PVeGdUpoJ6V5KR5Dl1uFHyqld |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ec93926d96c31c69 |
|
VISUAL
aHash
|
ffdf8f9fd1f1f19f |
|
VISUAL
dHash
|
631a383227272337 |
|
VISUAL
wHash
|
bf8f8f8f81818193 |
|
VISUAL
colorHash
|
07006000000 |
|
VISUAL
cropResistant
|
631a383227272337,00114ede94210000,06cff832c4d1d294 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.