Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1AF93FAF0F250EB7599338FC1E75BAA30F21524A8FB419587C6ED83A10AE9DD1981FE50 |
|
CONTENT
ssdeep
|
1536:dSvnDsrAZOYxPqIz410HWT7Rmna0sUzWw:djrAc3IcOWT7Rmnlsrw |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
a8a6d2c98df42637 |
|
VISUAL
aHash
|
ff7f0f1b03000000 |
|
VISUAL
dHash
|
ffffdfb3b3370f11 |
|
VISUAL
wHash
|
ffff3f1f1b010000 |
|
VISUAL
colorHash
|
19000e00010 |
|
VISUAL
cropResistant
|
fdffffffffff7f7f,ffffdfb3b3370f11 |
Fake The Graph page designed to appear in search results and trick users into visiting. May redirect to credential harvesting pages, malware downloads, or serve as a trust-building step before requesting sensitive information.
Malicious code is obfuscated using 4 techniques to evade detection by security scanners and make reverse engineering more difficult.