Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T16341C0601049AD37D283D1ECA6E16F2676C6C352CE832A04C2F897DE6FF2D41CF2A555 |
|
CONTENT
ssdeep
|
48:RzMKYFsJEgxjOJjHxhruEvJ8/s7PKqfbTX94LRpYG66KdpW:ufFsygxjOZrXy/GPKqfbTX9sAGoK |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ccf337097b1c0c66 |
|
VISUAL
aHash
|
c0fefe98f8181000 |
|
VISUAL
dHash
|
108030b23333f28e |
|
VISUAL
wHash
|
e0fefed8f9191800 |
|
VISUAL
colorHash
|
01602008000 |
|
VISUAL
cropResistant
|
0880301999111939,9497decfcfcfcfdf,108030b23333f28e,cc4547e1753417d1 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.