Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T174038436524E6C2FF22B85D5D735333D20AB52E7DE2F4A14E5B112B59384E89EF27088 |
|
CONTENT
ssdeep
|
768:dNu4ANyo4H2LTLp/S3M4zss6BXDsIhFkJr+GfGja:dU4XxMR1str1fr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
87043c31d3cec7f1 |
|
VISUAL
aHash
|
0201313c6c708080 |
|
VISUAL
dHash
|
debbcb69c9c22000 |
|
VISUAL
wHash
|
0303337f7f70f0e0 |
|
VISUAL
colorHash
|
38007008000 |
|
VISUAL
cropResistant
|
debbcb69c9c22000 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 1 techniques to evade detection by security scanners and make reverse engineering more difficult.
Pages with identical visual appearance (based on perceptual hash)