Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12BC2E917B304663D11A743E8F72973FBE3614086C62607A45AFD423D66D2ED8D933AC5 |
|
CONTENT
ssdeep
|
384:5AX0xBJ2ygDzS46SPzbO94Y+Ip+EATo1LR:ZBAbr6SPvOvfp+TToV |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3a6cc9999cc3331 |
|
VISUAL
aHash
|
ffe7e7e7c7efc3c3 |
|
VISUAL
dHash
|
220e4d0c1e1e2b2b |
|
VISUAL
wHash
|
9bc3c3c3c7c38383 |
|
VISUAL
colorHash
|
07007000080 |
|
VISUAL
cropResistant
|
220e4d0c1e1e2b2b |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.
Pages with identical visual appearance (based on perceptual hash)
Found 1 other scan for this domain