Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17552F9F121B173F1A546F3D8C81B6262B69334FEEB52EF18C3E49E9061915659C8ACC4 |
|
CONTENT
ssdeep
|
384:n4jNYKA30TuLs+P5j0/C2eBmbeNsWLCLCA:nIpxh+P5jOeBmaNPE |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8809a377895d9377 |
|
VISUAL
aHash
|
ff000018000000ff |
|
VISUAL
dHash
|
b0b3b23231882491 |
|
VISUAL
wHash
|
ff9d7a18810082ff |
|
VISUAL
colorHash
|
010000001c0 |
|
VISUAL
cropResistant
|
800080e0c0800080,a0808a0e26e280c0,100000c0c0000080,00100cb2b2240000,3132b2330d904c36 |
Victim enters banking credentials including account numbers and security questions. Attacker gains full access to victim's banking services.
Malicious code is obfuscated using 8 techniques to evade detection by security scanners and make reverse engineering more difficult.