Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T172B2A730B6151A1F736792D5AA21CB9973854282D2163BF5C7F882B3F68DE7044783AF |
|
CONTENT
ssdeep
|
768:OwLdps4APSyPxPCP9E/EzE0EJE3E9/I+gbf485KLadktsuE:/Rps4A/Zq1ksryqCI+SPC+ktsuE |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e7b2b247b0664b19 |
|
VISUAL
aHash
|
ffff0000000000ff |
|
VISUAL
dHash
|
4d4d016161616517 |
|
VISUAL
wHash
|
ffff00b0382020ff |
|
VISUAL
colorHash
|
02000000007 |
|
VISUAL
cropResistant
|
4d4d016161616517,a292a4b696a2aaa2,d491d6d4dc94cb94,4100606062606000 |
Fake Perabet site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.