Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1BBC2F9F6629455E57007C7F8F7B66669609630FBE7028AD8D3906A90F6C2CFECC825C1 |
|
CONTENT
ssdeep
|
384:rbBmh9WRQwJv9E5kec9vBvBlVrjmBw2vmYz:fBmq9EHcZOw2vnz |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
d1d58557960ddc34 |
|
VISUAL
aHash
|
feffff7d0400017f |
|
VISUAL
dHash
|
cc49b0e94c71c7ec |
|
VISUAL
wHash
|
7effff3c0000011f |
|
VISUAL
colorHash
|
07e00000000 |
|
VISUAL
cropResistant
|
cc49b0e94c71c7ec |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 4 techniques to evade detection by security scanners and make reverse engineering more difficult.