Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1BE4186E1577BDA2701B3D0D1B6CBAF0729E0464EDDD6460043ECC3DA07ECD58B94A194 |
|
CONTENT
ssdeep
|
24:hWC+MZk6F7ivM9chTMhy8TYeo0NEN5FCG5A2xWiwIF/vp+TOPI7YBgfVXA/M:rfJivMChWyaZaM2xW65+TOw7YYVt |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
bc38c3c693c74e0e |
|
VISUAL
aHash
|
ffcf898f8f9fbfbf |
|
VISUAL
dHash
|
5236333332346860 |
|
VISUAL
wHash
|
1181818b8b9f3f3f |
|
VISUAL
colorHash
|
07200048040 |
|
VISUAL
cropResistant
|
5236333332346860,c7490b5ec0c51719,000c22b2b2300c00 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.