Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B83274F24054601F219BC6CB8F295B6C73FA61BAE5BA0302A7E9838DDBDDC91DD06449 |
|
CONTENT
ssdeep
|
192:c0oDrlWrlmI6z40AAAqRZ6ahWBK6DrleBrl1trltr2Qf4K40W1AAqRZ6WmXLIlT2:UrlWrlJ0pRZ6ahU/DrleBrl1trltr2fB |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
92926c6d65969cec |
|
VISUAL
aHash
|
7e2c2c6c20180000 |
|
VISUAL
dHash
|
f4c9c9c9c97070f0 |
|
VISUAL
wHash
|
ff7e7e6c003c1818 |
|
VISUAL
colorHash
|
31e00000000 |
|
VISUAL
cropResistant
|
cc9617172b0d0ecc,a280c80723d080a2,f4c9c9c9c97070f0 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.