Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T16C21C17B70439A3715A3E2C1F6D3E74132518554A48E67811AF943CD0ADAD55C84B0CE |
|
CONTENT
ssdeep
|
24:hR/CBtsJHoj5fsQRz50ZspW6byrtY+0ikUCvRUZ:TetiHcfsQRVS2bya+0iNCvRUZ |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8c9b33ae8ba98c33 |
|
VISUAL
aHash
|
bd3c181818180000 |
|
VISUAL
dHash
|
71e8f0f031354a30 |
|
VISUAL
wHash
|
ff7e7e3c3c180018 |
|
VISUAL
colorHash
|
38040006000 |
|
VISUAL
cropResistant
|
71e8f0f031354a30 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Malicious code is obfuscated using 104 techniques to evade detection by security scanners and make reverse engineering more difficult.