Detailed analysis of captured phishing page
No screenshot available
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17651839540818C125252D1A5E3E1BE2683C1C345C36A4D70A7B847BE7AD6CD8CE692BD |
|
CONTENT
ssdeep
|
48:y1Y+zcwpwvHG83PvE5YwB3RlvNTDy3H2aJBmvlDi/b/kIgU0iNV:Bm8/vE5YulNT2wle/r30iNV |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
9292969e7c3c3c3c |
|
VISUAL
aHash
|
3e7e040000000000 |
|
VISUAL
dHash
|
6c48180000000000 |
|
VISUAL
wHash
|
7e7e060c0f0f0f0f |
|
VISUAL
colorHash
|
070020001c0 |
|
VISUAL
cropResistant
|
6c48180000000000 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Malicious code is obfuscated using 9 techniques to evade detection by security scanners and make reverse engineering more difficult.
Pages with identical visual appearance (based on perceptual hash)
Found 5 other scans for this domain