Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T16F32F847B34233710957123ABA4B53E6E735808CB73A0BD9A4BE816C6BD15C8CB37AD5 |
|
CONTENT
ssdeep
|
192:6pXxysEs3me+Zq1Bwe0xz7xahKTURLbb/M9XdvpylDM/4i84oQVAj3J9RSCY:SzWT4z0l7xMKmLbb/6v84oO83D8CY |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
c7c6c6936d383c38 |
|
VISUAL
aHash
|
3c7e003c00200000 |
|
VISUAL
dHash
|
e0e0616948686861 |
|
VISUAL
wHash
|
7e7e383c383c3c30 |
|
VISUAL
colorHash
|
30000000038 |
|
VISUAL
cropResistant
|
e0e0616948686861 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.