Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1FFF1CCB5B000A93782D3E6E59629673B72D2C3A9D9431B0077FD834C5FDAE8BDE22451 |
|
CONTENT
ssdeep
|
192:mnQ98yXx6Ce8W92FTilqQBVxKUYIYbOvxi:mQ9tQCe8e2FTilqQ3x9Ypb0U |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9203fc7db8da4cc4 |
|
VISUAL
aHash
|
ff0000000000ffff |
|
VISUAL
dHash
|
3bcde9d9fddc3030 |
|
VISUAL
wHash
|
ff00340d0300ffff |
|
VISUAL
colorHash
|
020000001c0 |
|
VISUAL
cropResistant
|
0000633b3b6300ff,0080206834301830,00002432b2320c10,ffc9e9d9e9ffdcf8 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.
Found 1 other scan for this domain