Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T18C1475BA005255AF015343E0E631FBBFA1A4D355DAE78B4E63FC93A57BC2CA0CD46260 |
|
CONTENT
ssdeep
|
3072:znM1qyESgqMlPLE+61SlPmSwiMn8tfQa/hgKXm4LkhOABKH1Awz2e9o4zEEv+nsz:NO7Ev+sz |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9db523988c376a6a |
|
VISUAL
aHash
|
063e383e3c1c2800 |
|
VISUAL
dHash
|
6a6a607272704872 |
|
VISUAL
wHash
|
1e3e3c3ebe9c2e00 |
|
VISUAL
colorHash
|
38000008400 |
|
VISUAL
cropResistant
|
fffff3cdcdffffff,6a6a607272704872 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.