Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1DF92717200892633526B1ACAB051FB0FB4C3C31EDE67DA91A7BC93D94BD1E59FE42158 |
|
CONTENT
ssdeep
|
384:SC+lKh+l+SLCqnjU29srPFA+lPosSI3lOp0zs/+Mxb5xlCS/szxNV4ZARLV72PUy:SC+ch+NLCqnY29su+qJI3lOp0ztCb5xf |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e96ad66592926d94 |
|
VISUAL
aHash
|
e0e0f1d9f9fbffff |
|
VISUAL
dHash
|
0903333333120b0f |
|
VISUAL
wHash
|
c0c08089d9f9ffe3 |
|
VISUAL
colorHash
|
06001000180 |
|
VISUAL
cropResistant
|
0903333333120b0f,e09e4b4f69390e20,6155616559517d51 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.