Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B85221B0D140777382C783E5DB61972A736083D1E91317AC42F583699FDBF04EE4A6AA |
|
CONTENT
ssdeep
|
192:ZJVrvsuA7TqxS+Hgewcq1VfiRJOOMW0INU/C1+F1eCO1+dONfqGXG6aM:/6TQn2Od1DqJJM |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9c96b6363634369c |
|
VISUAL
aHash
|
663c3c181800181c |
|
VISUAL
dHash
|
d4f0f0b0320832d0 |
|
VISUAL
wHash
|
7efe7e3c1800187c |
|
VISUAL
colorHash
|
38000c00018 |
|
VISUAL
cropResistant
|
d4f0f0b0320832d0 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Pages with identical visual appearance (based on perceptual hash)