Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T14D726332E148243F1E9302C27BE17B9FA2B7804291169E5D85FC82582FDAF8EFD32545 |
|
CONTENT
ssdeep
|
384:FuutJGII41bPqn48NK093o49qliJJ9Uc+LYDHtOiQtD1qAlM:FUIII8NvC4IliJJ9UJUHwiCI |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
aa42ff97113ed418 |
|
VISUAL
aHash
|
002000007fff81db |
|
VISUAL
dHash
|
c6c3c7e7f82b3333 |
|
VISUAL
wHash
|
002061017fffc3ff |
|
VISUAL
colorHash
|
02000000e80 |
|
VISUAL
cropResistant
|
fa786eed8ccec555,49692ca4363d3931,2626266d2c2bab93,aeae99932b3b3aba,f0002b2b2b33332b,808080420b8880a2,c6c7c3e7c7e3cff8,02d4d04cf0b2b24c |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.