Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T132E3A6A0B49150BA0BB7E4D3D3257F167199E3CFCA19514266FE83601FEADB8F82146C |
|
CONTENT
ssdeep
|
1536:4GzCzCjcWgJNJ8kQiGnYpCGaw3pVTcCnw:dCrNm2U |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c61966663964a9f5 |
|
VISUAL
aHash
|
003cffffffe7e7e7 |
|
VISUAL
dHash
|
c0694969694d4c4c |
|
VISUAL
wHash
|
003cbdbdbda5a4a4 |
|
VISUAL
colorHash
|
06000000e00 |
|
VISUAL
cropResistant
|
69696969694d4c4c,00d0d02268696169 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 5 techniques to evade detection by security scanners and make reverse engineering more difficult.