Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10D91FE7094C8983B04C3D3F1E271AB6BB3D28B95CA635741A7F4878A0FCBD94CE42654 |
|
CONTENT
ssdeep
|
48:b3BWws+BDnaHEeXNCGZGWnmfgepBPDTW6XDY4oSHlCXMfwxOyYbYB:FoSaHExWmfHDaAXzHONn |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b39b313999749931 |
|
VISUAL
aHash
|
cfe7e7ffffffc3c7 |
|
VISUAL
dHash
|
984d4c6868180c1c |
|
VISUAL
wHash
|
cfe7c7ff3c0c0000 |
|
VISUAL
colorHash
|
07000008043 |
|
VISUAL
cropResistant
|
984d4c6868180c1c |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Victim enters credit/debit card details including CVV and expiration. Card data is captured and can be used for fraudulent transactions or sold on dark web markets.
Found 2 other scans for this domain