Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19F12EEA5C086C6B3205296D462323FAA35D043CECA934A5D56FC4FE96EE1C44ED3BC76 |
|
CONTENT
ssdeep
|
192:CRYTag2PdB2/WHP1oNfltKioNfltKkw1rY:EYWgu7qWHSpl+plxw1rY |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
83878f7f7ef88080 |
|
VISUAL
aHash
|
ff3f7f0000000000 |
|
VISUAL
dHash
|
c040d08000000000 |
|
VISUAL
wHash
|
ffff7fff00000000 |
|
VISUAL
colorHash
|
021c0000000 |
|
VISUAL
cropResistant
|
c040d08000000000 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 8 techniques to evade detection by security scanners and make reverse engineering more difficult.