Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A8B2D823A6893235060702EEB75F23EDE32680C9D3521F84A1FE811D1AD1DE5D5B7AD7 |
|
CONTENT
ssdeep
|
384:2D1XwUv8DYpOxhoN6W5o2sHMT1E+kGYvgsvqHHvYteUvCwtE1ngJd+9Xs3VrkzRJ:sRYvgsiwteUvCh1ncd7Vrmt/rv0lnfN2 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
ccc6337969638c9c |
|
VISUAL
aHash
|
003c3e3c1818003c |
|
VISUAL
dHash
|
c8f0e068b2706869 |
|
VISUAL
wHash
|
7c3e7e3c3c3c003c |
|
VISUAL
colorHash
|
38030200000 |
|
VISUAL
cropResistant
|
00441a2b2fd22900,c8f0e068b2706869 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.