Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1F6B2833241C825B316271AC9F0A1EB5FB6C3C20EDE4BDD91D3ED93C54BC5D89EA42594 |
|
CONTENT
ssdeep
|
768:N91O+3a27GH2FXUPmBMKGyYxswv86gW5wBC0Q2AmyCkvux5WFAhsQ+bjWqj:N91O+qaI2FXUPmBvGJxswv86gW5wBC0g |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e96a966592924dcd |
|
VISUAL
aHash
|
e0e0f1d9f9f9ffff |
|
VISUAL
dHash
|
090333333313032c |
|
VISUAL
wHash
|
c0c08089f9f9fbc7 |
|
VISUAL
colorHash
|
060010001c0 |
|
VISUAL
cropResistant
|
090333333313032c,e8966967311986e8,0d05717171756969 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.