Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19EF21F7160043E3B90EBA3CAB3E1DB9A73D18241CA1B56055AF6A7DC4FF7C81DE1644A |
|
CONTENT
ssdeep
|
384:F49ISuaPgxbyOYiDlK69rwEAu2w83EnPRa60KUdiqUCvv417hpYJ:F490ZlK6twEAu2wwEnZxNqUC417hKJ |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bcc2db6460cb663c |
|
VISUAL
aHash
|
fd1f9f7f83839f8f |
|
VISUAL
dHash
|
91b82da02626303e |
|
VISUAL
wHash
|
bd1f1f1f03838f02 |
|
VISUAL
colorHash
|
07000000080 |
|
VISUAL
cropResistant
|
91b82da02626303e,a43223baa2313371,35b7a1b6b2969637,7165494d65715141,580806659d4c5c59,69796171f0b85959,3649692570b20c11 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.