Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T137B3D6F582A035ED4117AFC8DB22BBBF715B74BFFBA38A84827847A15683D84D844C50 |
|
CONTENT
ssdeep
|
1536:TYAXfbX0KVlQLfUUc7glQLfUUNlQLfUUzR4CFf5l4IEAcO1+9fTirPOx:TY8VIccINIBF36 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bc6d41d196d2d2d2 |
|
VISUAL
aHash
|
1a819b9f9fffdfff |
|
VISUAL
dHash
|
b23322272b383c38 |
|
VISUAL
wHash
|
1c00009783dfdfdf |
|
VISUAL
colorHash
|
07c00000040 |
|
VISUAL
cropResistant
|
b23322272b383c38 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Malicious code is obfuscated using 2697 techniques to evade detection by security scanners and make reverse engineering more difficult.
Drainer supports multiple blockchain networks and checks for high-value tokens on each chain before executing drain operations.
Found 10 other scans for this domain