Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12582EA736140323E0D920283A7D027BDF3B750C1EB0539D9D6BA96DE6B85E19DF3642A |
|
CONTENT
ssdeep
|
384:/KuKIIyy8OeO3DcDBb0b2dxHn1Al38OtXS:/MIIyoZ+VdW8z |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e042f7913bfcd007 |
|
VISUAL
aHash
|
0000000000ffffff |
|
VISUAL
dHash
|
cec3c787eff80e43 |
|
VISUAL
wHash
|
0070600103ffffff |
|
VISUAL
colorHash
|
030000001c0 |
|
VISUAL
cropResistant
|
3515db5333599b9b,5526a3b3bb36331b,f000272f0cc20313,cecfe7c787e3eff8 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.