Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T110A1B661A25D2AA35D4387CB7BD25AF3375343A4FD911304A0ED8B1C29EBCA0CD29D87 |
|
CONTENT
ssdeep
|
96:TGUer990H1uNaqU4yDITEwpxeHWKyzKjS:hC9k4/Ywpo29z |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
dab7738c8e238c8c |
|
VISUAL
aHash
|
82804b7d3c384000 |
|
VISUAL
dHash
|
4c58bae970608a5a |
|
VISUAL
wHash
|
87e8cf7d3e3c6080 |
|
VISUAL
colorHash
|
31600018000 |
|
VISUAL
cropResistant
|
24b4d4cce6c6c2c3,4c58bae970608a5a |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.