Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1D9218BB48845ED6784C7A2D01B72971B37C2C795EC4B0742A3F5939E0EEAD44EE621D0 |
|
CONTENT
ssdeep
|
24:hWCS2AOHtsPO9d153Kx7gSLSbe+JvOpGL1MTzd0k+:u2WPO9J34gz5tOE1MTzd+ |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
f87878565a787870 |
|
VISUAL
aHash
|
00ffcfffffffffff |
|
VISUAL
dHash
|
3206161600000000 |
|
VISUAL
wHash
|
008181810f0f0f0f |
|
VISUAL
colorHash
|
070004000c8 |
|
VISUAL
cropResistant
|
0e16162a00000000,80002020202000c0 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.