Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T15AF16672C49026BB11C391C86775BB59F7C28249CA37470A63F7D35E9BCAE41DC23A58 |
|
CONTENT
ssdeep
|
96:TPGQAbGbrDi5Vr9FGCU4qCvd2um+cSFzD2XpxQXXQOAKMuY+D52nNe:bGQAbrP9Fb2um+cSdD2Xpxq9AKOUEo |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b3318cc6c6cc99b3 |
|
VISUAL
aHash
|
ff838fe3e7ffffff |
|
VISUAL
dHash
|
a61e1b8c4c300800 |
|
VISUAL
wHash
|
ff8381c3040c0000 |
|
VISUAL
colorHash
|
07000040000 |
|
VISUAL
cropResistant
|
a61e1b8c4c300800 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 1 techniques to evade detection by security scanners and make reverse engineering more difficult.