Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1DB527523E058313B404B47C9E757A3F930EA2169DA09096497FD47EC47BAD40FD1B91E |
|
CONTENT
ssdeep
|
192:a2yHxuz3JNTo+zbhdCOrYH0ntwy5yAJm/W7lEE52MSxRs5rspvF+BsbBSS+w:a2lz3g+p5YHK3g/aSxRs5rxS/ |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b34dcc6333467694 |
|
VISUAL
aHash
|
ffffc7c7c7c7ffff |
|
VISUAL
dHash
|
8a230c9e9e8e2a36 |
|
VISUAL
wHash
|
6699c3c3c3c38f83 |
|
VISUAL
colorHash
|
07007000000 |
|
VISUAL
cropResistant
|
8a230c9e9e8e2a36,8d8e9eaece8e8e2e |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 3 techniques to evade detection by security scanners and make reverse engineering more difficult.