Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T15B12B56112D80E3E65538794EF94F728435ED382DA0E901CF2BD52B65ED3C94ECAB398 |
|
CONTENT
ssdeep
|
96:eui7MWlhUiCkbsfp7UQkkxK55QmH4PWPCcNkstk5WCbkxSIFkElkBsi1ecDkBhBl:2huT7yXNPCSBKWCb1g3XSMS1bS06CnU |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
e6c591194ec49d3b |
|
VISUAL
aHash
|
fefffff00000ffff |
|
VISUAL
dHash
|
804c042551410808 |
|
VISUAL
wHash
|
7e00fff000f700ef |
|
VISUAL
colorHash
|
070000001c0 |
|
VISUAL
cropResistant
|
804c042551410808,0008103232000000,0010083032100810 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Malicious code is obfuscated using 2 techniques to evade detection by security scanners and make reverse engineering more difficult.
| ID | Português | Inglês | Trigger |
|---|---|---|---|
Found 10 other scans for this domain