Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B102B727B3003731055B01A5BBA683DEB7258189E21B2B8663FD439D67C1DCACA3A6D5 |
|
CONTENT
ssdeep
|
192:VTS+7ecC4mIY43t5KXZSm2xEH5K4EIO2S0/+XQIrH:jO943t0XP15K4EIo0/+X9rH |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c7b03c696961969e |
|
VISUAL
aHash
|
70743c7838303038 |
|
VISUAL
dHash
|
c4c4c4d0c2c24262 |
|
VISUAL
wHash
|
707c7e7878783838 |
|
VISUAL
colorHash
|
38006200040 |
|
VISUAL
cropResistant
|
c4c4c4d0c2c24262 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.