Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T151E1513191C4FA3B098321E6B712A70B32DBD246D74B0B00E5F9E3D94BE1D49DC6B596 |
|
CONTENT
ssdeep
|
192:kJgHrd/wkVSVwnU4KzTj9Qr0mIVSV39NHrr:kJgHrhwksqw3sl9lr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c419a65be4d99dc4 |
|
VISUAL
aHash
|
01007af8000876f7 |
|
VISUAL
dHash
|
32d5b292c07becce |
|
VISUAL
wHash
|
db00faf81008f6f7 |
|
VISUAL
colorHash
|
31401008009 |
|
VISUAL
cropResistant
|
32d5b292c07becce |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.