Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10A322271B00436271487E2E563693B0FEAE5418FC6671B58AAFDC7991FDAD04CC32E68 |
|
CONTENT
ssdeep
|
192:37CD/444Wz+N+hhiMxGfz80KnhfKnj1T/yS:376444WScMdB |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e49d31258e263cdd |
|
VISUAL
aHash
|
83c3d7f7ffc3e3c7 |
|
VISUAL
dHash
|
2696946d62864e8c |
|
VISUAL
wHash
|
03011737f8c0e0c0 |
|
VISUAL
colorHash
|
06210018000 |
|
VISUAL
cropResistant
|
c9d4a2b69692c4c9,cccdd584b1b33415,698a8398e8c8ad90,4d3c9c0c8c0ac282,2696946d62864e8c |
Fake bet365 site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.