Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T143A11071F058992F550207C8935DB69B7296A1CDC70E1304BAD06361EF9A997FC3922E |
|
CONTENT
ssdeep
|
96:T+GDcDS6its+itb1HEDEsFb/mdgk4xLm4LMdDIuh9:jDcDS6H58EsJ/8l4BjLmh9 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
d3bde7038cc8e254 |
|
VISUAL
aHash
|
fe0cfcf8387cf4f0 |
|
VISUAL
dHash
|
e2183030f0c8c9c4 |
|
VISUAL
wHash
|
7a08dcf8387cf0f0 |
|
VISUAL
colorHash
|
06602000000 |
|
VISUAL
cropResistant
|
69e9e1f0ac2c2c0d,aa189830f0ccc4c5,36b6d6d2defebc1b,2cafad8d4d09c1f9,d8cb818981615334,03074f475766415d,f9466627662685c1,d8dbc7e316073f8f |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters credit/debit card details including CVV and expiration. Card data is captured and can be used for fraudulent transactions or sold on dark web markets.
Found 1 other scan for this domain