Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1A6029432A341AD3B549740E1E7A2425AAADCC760CC2B4A5A43F6C2295FE3D54FC53B4A |
|
CONTENT
ssdeep
|
192:xYZ77rZ7IJaZ7ts9F7mrEQ1Vx9rlcIgGURS8SqUG/rQVi20G7ZDSI:xYZ3rZ0JaZ5s9FKIQD/rlcIfURS8HUGK |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b9c6c639319339c6 |
|
VISUAL
aHash
|
ffe7ffc3c3c3efff |
|
VISUAL
dHash
|
1e8e9a9a9a920e4c |
|
VISUAL
wHash
|
efc0c3c3c3c3c0e6 |
|
VISUAL
colorHash
|
07e00010000 |
|
VISUAL
cropResistant
|
1e8e9a9a9a920e4c,3878f9f8ccd8d1e2,6819993979733337,4f1b9737371fc85e |
Fake WhatsApp site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.