Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T111729433A140383E2D7707823F652359B7B24195F6021A78CDBD931E4BC6D4AAE3B995 |
|
CONTENT
ssdeep
|
384:ezwPIIvAbXfQttreiToNyY8FZfppIOfAbJ44PCa:eEIIAvQrekokY8FZf7Da |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
a367de10b956e10e |
|
VISUAL
aHash
|
20212121074700ff |
|
VISUAL
dHash
|
c4c7c7c7dfdde423 |
|
VISUAL
wHash
|
207171613f4f10ff |
|
VISUAL
colorHash
|
000010001c0 |
|
VISUAL
cropResistant
|
000000000000032b,c4c7c7c7cfdfc464 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.