Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T19D9158B09082BA3701D7C391EF39575F73D88698DB47970913F4D3989AC6E5BDE61820 |
|
CONTENT
ssdeep
|
96:T7IJojnXDkcw7tt+a/DY4PpXqu/r/r/r/F8KB:3IJoTidB/r/r/r/F8KB |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e19394edcc84f4e |
|
VISUAL
aHash
|
000b01ff34b0ffff |
|
VISUAL
dHash
|
72dbdbb46465a555 |
|
VISUAL
wHash
|
000301ff30b0ffff |
|
VISUAL
colorHash
|
07207000000 |
|
VISUAL
cropResistant
|
8282e2eaeae28282,dbdf99646565a555,62db1adbdbef9dde,d9e6766663697926,4c9736666d595932,adccdbb3b7b7beb6,616c6c5e1e7e7e7c,0d06028202029a9a |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.
Pages with identical visual appearance (based on perceptual hash)