Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1AE3393722246683F232B81C5B665633AF2B6934FCD17510692FD83A40BF6DD1EC2366D |
|
CONTENT
ssdeep
|
1536:ay/K4IZEcBEopGVNGxHE7OxALW8z0fA0YzXzR:nOhYzXt |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
dae5a49aa5e6b08a |
|
VISUAL
aHash
|
ff1800003c3c3c1c |
|
VISUAL
dHash
|
3232301271717171 |
|
VISUAL
wHash
|
ffb818183c3c3c3c |
|
VISUAL
colorHash
|
07600000040 |
|
VISUAL
cropResistant
|
0090343332b40000,e0869696b29696e0,5a56a62acd8b8bdd,e0f0e0e4e0e0e464,3232327071717171 |
Fake Padişahbet site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.