Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T155C1FEB42091AA67019BF6E2B7772A3F37E28384C583070851FDDB9D1FD6E09DD26291 |
|
CONTENT
ssdeep
|
48:TaUL8E+ZkK9nQaP+4wGRUagmxGwi6Sh5wM4mr8b1c9PQ6MZ7hVvtrfxK:TeEw9nZG4BRvgmYZ6aHZ9PP+Vt1K |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c3b93caf39a5c460 |
|
VISUAL
aHash
|
ab2c7efc3c762000 |
|
VISUAL
dHash
|
6259d4586be4cf00 |
|
VISUAL
wHash
|
ab2efeb87c7e2000 |
|
VISUAL
colorHash
|
31601018000 |
|
VISUAL
cropResistant
|
6259d4586be4cf00 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.