Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10EA1DF70A092AE3B01D783A1BA39732F72D5C1D5DA43AB0913F4935ACFE5F86DC21465 |
|
CONTENT
ssdeep
|
96:TtNidJJ0hDTLjgc7TeWN5r/7cGSKY+JE1ql05qM8s1KB:BwJ0hLjgyhgx+JEkSkS1KB |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8f6d684748e40f5e |
|
VISUAL
aHash
|
00afbfff3c3eff5f |
|
VISUAL
dHash
|
e3587ac87860a4d3 |
|
VISUAL
wHash
|
00af3afe083aff09 |
|
VISUAL
colorHash
|
06202040000 |
|
VISUAL
cropResistant
|
8282e2eaeae28282,5a58a2787866a5d3,e16363e11ec0cc72,e8e8e8e8490d338f,f8f047151315ccac,12b2607968b2300a,8fa5b39b9f8f8f8f,392d85cd8c8dcf8d |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Found 1 other scan for this domain