Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10C0283AA5221C2370053C7E5A15B6B9B61D6618EC5C70251D3FEC3ED0EEACE6F81B01B |
|
CONTENT
ssdeep
|
192:b9q0se4444444eT8jjGioLDN+9Vtz0Bbu0GhFhhb:b9qQ4444444eUuk7Sq0GhFzb |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c3c73c38b66349cc |
|
VISUAL
aHash
|
003070667e0c0000 |
|
VISUAL
dHash
|
8ec6c7ccccd8cc66 |
|
VISUAL
wHash
|
00707b7f7f7f6000 |
|
VISUAL
colorHash
|
38400008240 |
|
VISUAL
cropResistant
|
107165531217d5d2,39f9d35bdce41090,8ec6c7ccccd8cc66 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.