Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10F0479234259752A4437C6C134AA5B3BD0B69DAFFEE70A010EDC8BF72BF9C60701A159 |
|
CONTENT
ssdeep
|
1536:usQHRsIIivpR4nXBKpSpFl26vA8Nis5KM9BWgy4NtI5NXEAzXX8FAgs+aFyKl:PQHjRUMZ8Nis5FGGXI5BxYAl |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9fbd404bf2308f0e |
|
VISUAL
aHash
|
ffff9f8fbf3900fe |
|
VISUAL
dHash
|
cc667e3c63738cc4 |
|
VISUAL
wHash
|
677b1f0f1f1000fc |
|
VISUAL
colorHash
|
06c40000040 |
|
VISUAL
cropResistant
|
cc8e767c5e6e7363,00c0c014d4c00040,008846b9a9364800,0000000000000000 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 7 techniques to evade detection by security scanners and make reverse engineering more difficult.