Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1EA72FB346480AA3390C7E3C9A764D32F63C28295EE174B266AF8C35C4FCBE59DE51716 |
|
CONTENT
ssdeep
|
384:VwuTeI9XfevgLWUEgbjlasT2jlHnjQ/AJCqz:VwuSI9XfevPn2jlasT2pHLCqz |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e51f30e73b10cd6 |
|
VISUAL
aHash
|
00000000003fffff |
|
VISUAL
dHash
|
dd6970f060ef0f0c |
|
VISUAL
wHash
|
27001818107fffff |
|
VISUAL
colorHash
|
020000001c0 |
|
VISUAL
cropResistant
|
a1f87f03000d0823,ddd661f1e078e0ff |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.