Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17C3276E34150602E655FC2CB4F29576C33BB60F6E5BB0242A7ED878CDBDAC92DD06845 |
|
CONTENT
ssdeep
|
192:cc5woEAIhQ40dAAqRZ6h8W7BK6O2Kr2NzRe40zJAAqRZ6WmXLIlT3PX:N5uj0wRZ6h8Wd/O2Kr2N0oRZ6WlTfX |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
92926c6d6d929ee4 |
|
VISUAL
aHash
|
7e2c2c6c00180000 |
|
VISUAL
dHash
|
f4c9c9c9d23032f1 |
|
VISUAL
wHash
|
ff7e7c6c003c1838 |
|
VISUAL
colorHash
|
31c00018000 |
|
VISUAL
cropResistant
|
dc949cc8f2e72f8e,f4c9c9c9d23032f1 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Pages with identical visual appearance (based on perceptual hash)