EN ES PT
Back to Stats

Visual Capture

Screenshot of yhokvu.cn

Detection Info

https://yhokvu.cn/
Detected Brand
Trust Wallet
Country
Unknown
Confidence
100%
HTTP Status
200
Report ID
56a31a50-4de…
Analyzed
2026-06-28 10:19

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T19B82D537934CB731029343D89F3A63FA621D86C9D7520BA526F4833D5EC2F94CE222A5
CONTENT ssdeep
192:oeWPvWbPBEPjBofJTkDAwU+EWK0ci699U8Cv2o0UK5kzHfg0VI2KApg+XvYwuCUI:oe4vqEbBcTG4Rh0ci69mv+UGo5f/ZB

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
b6c9c9c932c93636
VISUAL aHash
ffff070707070707
VISUAL dHash
dc6d6d6d6dededed
VISUAL wHash
ff3f070707070707
VISUAL colorHash
06007000080
VISUAL cropResistant
dc6d6d6d6dededed,ffff9f9f9f9f7fff,7f7f9f7ffef6f6ff

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Personal Info

🎯 Kit Endpoints

  • yhokvu.cn/blog/troubleshooting
  • yhokvu.cn/blog/wallet-vs-exchange
  • yhokvu.cn/blog/staking-guide
  • #blog
  • yhokvu.cn/blog/top-coins
  • yhokvu.cn/blog/security-guide
  • yhokvu.cn/blog/pancakeswap-guide

πŸ“Š Risk Score Breakdown

Total Risk Score
65/100

Contributing Factors

Active Phishing Kit
Detected kit types: Personal Info

πŸ”¬ Comprehensive Threat Analysis

Threat Type
Phishing Kit (Personal Info)
Target
Trust Wallet users
Attack Method
Phishing webpage
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Personal Info

🏒 Brand Impersonation Analysis

Impersonated Brand
Trust Wallet
Official Website
N/A
Fake Service
Credential harvesting service

βš”οΈ Attack Methodology

Primary Method: SEO Poisoning Landing Page

Fake Trust Wallet page designed to appear in search results and trick users into visiting. May redirect to credential harvesting pages, malware downloads, or serve as a trust-building step before requesting sensitive information.

Secondary Method: Standard Phishing Techniques

Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
yhokvu.cn
Registered
2024-06-19 23:00:40+00:00
Registrar
Web Commerce Communications Limited
Status
Active (older domain)

Hosting Information

Provider
Web Commerce Communications Limited
ASN

πŸ€– AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.