Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T106B2CF76C3BA632FB1D34AC79F2277BEE17A606CC5524A3AC7E853905B80E48EC53055 |
|
CONTENT
ssdeep
|
96:aB5ujq6PBL1EZKTshe8/egL1IVyvXgPHI+v/PHRwF2pNeOaBDXB7vJ57y4rqAJ2W:aIPJLSS0wVOGO27CLj4Q5YIYJnqIXFjo |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
99dbc3e664646471 |
|
VISUAL
aHash
|
7c3c18004252464a |
|
VISUAL
dHash
|
c87932308aaa8a96 |
|
VISUAL
wHash
|
423c3c185e7a7e5a |
|
VISUAL
colorHash
|
38000000c00 |
|
VISUAL
cropResistant
|
c87932308aaa8a96 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters credit/debit card details including CVV and expiration. Card data is captured and can be used for fraudulent transactions or sold on dark web markets.