Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T186D1FD753084B73B0297A3C2BB31DB1AB3D2D255CA4B1B1026F9D39E9FD6D0ADC12256 |
|
CONTENT
ssdeep
|
192:wbjglZIS7qeHthwTKH9y7WV9X331hSDlZI4r0nJ52:0MlZIS7qeHt2H7WV9X331hGlZI+s2 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c01c2433dddcfd31 |
|
VISUAL
aHash
|
1300f8fc282866f3 |
|
VISUAL
dHash
|
36d5b2b1dbc9cce6 |
|
VISUAL
wHash
|
1700f8fc783866f3 |
|
VISUAL
colorHash
|
31601000000 |
|
VISUAL
cropResistant
|
36d5b2b1dbc9cce6 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.