Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1EFB1DEB440409A77468BA2C167315F1F73C6E298DE030B1D26E5C7AECFAAF46DD51681 |
|
CONTENT
ssdeep
|
96:TnkcOwy15fAG3iqJh1lS/1k/r83ixjuNp6p+6J:rXO7eG3J2/1kz83kWp6pb |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b60cb1bfd69602b8 |
|
VISUAL
aHash
|
f70051b49088cf67 |
|
VISUAL
dHash
|
2cb2a5643459188c |
|
VISUAL
wHash
|
f71051bc948ccf66 |
|
VISUAL
colorHash
|
1a600010000 |
|
VISUAL
cropResistant
|
2cb2a5643459188c |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.