Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12031777A614874D70143A5F1B313B26297978E47C7922B408DF1C2DD1BA4C75CC6B58F |
|
CONTENT
ssdeep
|
24:hR/CcTN/+TN/0AdlT0ZJMFpWBXGkPDyiK9h8aPaUTazfov:TXTNmTNMitOqeWiKv8aPaUTCfm |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3738ccc4b0d9c8d |
|
VISUAL
aHash
|
e7e7c7c0e8ff3f3f |
|
VISUAL
dHash
|
cc0d0c094908d248 |
|
VISUAL
wHash
|
67c7c3c0c0e83f33 |
|
VISUAL
colorHash
|
07202000080 |
|
VISUAL
cropResistant
|
cc0d0c094908d248,e370596931cb8932,72cfa7e3e3e44d99 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.