Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T124F285B2A082BD370297D2E266665B6B32E0C1C9CA67126093FCC37D6BD1C55FD67342 |
|
CONTENT
ssdeep
|
768:5ioxVCsRQkSg8M4zYpjYyDc+6vIbnUgrr:5ioxogl4cZFrr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bb3ac2498e826b3e |
|
VISUAL
aHash
|
f98f879f99f9ffff |
|
VISUAL
dHash
|
633b3b3333331723 |
|
VISUAL
wHash
|
b98b81899bc181ff |
|
VISUAL
colorHash
|
070000001c0 |
|
VISUAL
cropResistant
|
633b3b3333331723 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 168 techniques to evade detection by security scanners and make reverse engineering more difficult.