Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1D5E2AB60986D8177A0D2CEE15B586334D1439E87CBA1F748DDBB93087DAEC7C9C5B8A0 |
|
CONTENT
ssdeep
|
384:Lh+laULsvuLVMFgLakd3oUHpAUyihvWUPKOAP06E:Lh4DLCaukFoUHpdTxOI |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
cc9c65677792b230 |
|
VISUAL
aHash
|
20381c3c103c3800 |
|
VISUAL
dHash
|
64f0f07170d0d0d4 |
|
VISUAL
wHash
|
3a3c3c3c187c3c7c |
|
VISUAL
colorHash
|
30207000000 |
|
VISUAL
cropResistant
|
cec6e4e4e4f6e666,3024a09498da7961,64f0f07170d0d0d4 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 5 techniques to evade detection by security scanners and make reverse engineering more difficult.
Found 1 other scan for this domain