Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1ECA13026A108753642C303EBBF72A3DDB6A5D5848447174C5BF8820DAAD2EC8CE436C4 |
|
CONTENT
ssdeep
|
96:TcqEXket3fKW0UhAH4ePtsCa6dziihEAo/o:t+kIZhu4SsArTP |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
83543e3e9dc639c1 |
|
VISUAL
aHash
|
3c3c3c3e3e3c3e3e |
|
VISUAL
dHash
|
f4d4d4d4d4ccc4d4 |
|
VISUAL
wHash
|
3c3c3c3c3c3c3c3c |
|
VISUAL
colorHash
|
06000258001 |
|
VISUAL
cropResistant
|
b292ea6ad2b232a2,2a5a025e1e261682,aaaaaaacaeeaeaae,8ece565454545454,ffffffffffffffff,f4d4d4d4d4ccc4d4 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.