Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T130E1630766923325064B137EF78353DCF7260458A27A0748A1FD821EABD19CDC67BEDA |
|
CONTENT
ssdeep
|
192:5gxOWYUTpih+1qDhF68FPCYNocQAWZZl0A7qvw:5g39i8A9zYAm06qvw |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
808abf8f40713fb5 |
|
VISUAL
aHash
|
ffff1f0000000000 |
|
VISUAL
dHash
|
fffbff88d8df9e3e |
|
VISUAL
wHash
|
ffffff000000c30f |
|
VISUAL
colorHash
|
00007000400 |
|
VISUAL
cropResistant
|
fffffff7ffe7ffff,fffbff88d8df9e3e |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.