Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T145B189B5D8849E231197C2E5B2356B9B32C19380EB070B7427F5939DFFC9DA8DC25294 |
|
CONTENT
ssdeep
|
48:TNV5mwNF8ho/N1CcwbN3m/brsjJXifCzYFMwdKnW98kz/oUWZY/jVUB14:TNVxNn110R2TQ9SqyzdKnW98kDoaBwO |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8966b972b6992699 |
|
VISUAL
aHash
|
00707a3800009bff |
|
VISUAL
dHash
|
8c92b262904312da |
|
VISUAL
wHash
|
0278faf84000dfff |
|
VISUAL
colorHash
|
39600008000 |
|
VISUAL
cropResistant
|
d2ce262636a6b6de,8c92b262904312da |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.
Pages with identical visual appearance (based on perceptual hash)