Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1F8420B312100767B49DBA3C2AB369B5FB3E1C296DE130B0956F4A38C9FDAD4DED52112 |
|
CONTENT
ssdeep
|
192:rpp7adOefVSBVojC5V3b3va2ZRNlih4O6G791RA7pSZnHyzdj8/x:Ndaj9S0jehv5ZR/iuO6GZ1RAdS0hsx |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c7cab9ef94262b08 |
|
VISUAL
aHash
|
ff7e00243420260e |
|
VISUAL
dHash
|
49d8c0cce44e6c3e |
|
VISUAL
wHash
|
ff7e30203420be9e |
|
VISUAL
colorHash
|
00007000080 |
|
VISUAL
cropResistant
|
4641496941a614c8,4464949a9894925a,caa2a89696a882a2,0040b4c6c6c62980,d8c0c4e4444c7e3e |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.