Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T167318870A0298C3B82D3C3D9A6F5635F73C9C309DE63074243F997991FAAC52EE45454 |
|
CONTENT
ssdeep
|
48:MupvNmRdU4+5T/1rdLB7UqxcWyXX83s80:Mu9NmRdUTbrdL2KcW8M3t0 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cccc9333a6cec623 |
|
VISUAL
aHash
|
3c18181800000000 |
|
VISUAL
dHash
|
7030323210000010 |
|
VISUAL
wHash
|
7f7f1b1b0030f118 |
|
VISUAL
colorHash
|
38000e00000 |
|
VISUAL
cropResistant
|
7030323210000010 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 46 techniques to evade detection by security scanners and make reverse engineering more difficult.