Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B6D252E68328D53FE006C7DCE795A95032AE42EFF9818684A6E49F6F0DF05595C4C3A3 |
|
CONTENT
ssdeep
|
768:XIOCNdzQtLpUZa1ICsSCw3ZsNagC78RCDCvWFlH2CHCosz:4xNd8tFUg1rs1w3uNaD78RCGvWFlHBiz |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9d8e756ac8b462b1 |
|
VISUAL
aHash
|
001a1fbf3d898702 |
|
VISUAL
dHash
|
32726c22f9193e4a |
|
VISUAL
wHash
|
00be1f3fbf898702 |
|
VISUAL
colorHash
|
39600018000 |
|
VISUAL
cropResistant
|
32726c22f9193e4a |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.