Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1E361FFBA2581953705D3C3E07A255F2A63D7C189D6870F2436EDC78E4AE6E09DC1168A |
|
CONTENT
ssdeep
|
96:TTXKaFYPtyKUW97dmv+efBCi727aI7c74:vX/FYPkKr97d0+efwea |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8936c1369dc93e8b |
|
VISUAL
aHash
|
00203d1a18007c7d |
|
VISUAL
dHash
|
cbcca9f235b5d1d1 |
|
VISUAL
wHash
|
00207f3e1f007dff |
|
VISUAL
colorHash
|
39600010000 |
|
VISUAL
cropResistant
|
9c9e9b0333335141,f67a68333a3ce3fc,cbcca9f235b5d1d1 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.