Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12791857A8085EA77049780E1E7A55F1B3B92C34ADA43132066EAC38D1FD6E4CED59381 |
|
CONTENT
ssdeep
|
96:Tmhiwk5U29e6Ia0+jWIaOKUwn9+lwU24ji:aE5U2YFZY/Kx9++U2Qi |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
952b916ec07bd568 |
|
VISUAL
aHash
|
063e18083086007e |
|
VISUAL
dHash
|
0ee8f25b656c0ed4 |
|
VISUAL
wHash
|
c73f3a2931b6007e |
|
VISUAL
colorHash
|
39600010000 |
|
VISUAL
cropResistant
|
d8c46529296174f2,0f8f9397c6931f77,c8d87c44fcf46c6c,0ee8f25b656c0ed4 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.