EN ES PT
Back to Stats

Captura Visual

No screenshot available

Información de Detección

https://airdrop.bankofvector.com/
Detected Brand
Unknown
Country
International
Confianza
100%
HTTP Status
200
Report ID
bcc177e6-83a…
Analyzed
2026-02-27 17:26

Hashes de Contenido (Similitud HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T10222833161911A3F496BCBE8B1B8F32A65AEC31EC92BC059F6DC43721BCBD01DD12588
CONTENT ssdeep
192:aWvZunTYzgyes6YvYipkzaRZJ/YhOlrusJ/:ZhunTY+YvYWk2lYqus9

Hashes Visuales (Similitud de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
c1a13f2dc5352de1
VISUAL aHash
03047e7e78780000
VISUAL dHash
caac92d0d0c00000
VISUAL wHash
026f7e7e7878e0c0
VISUAL colorHash
11007000000
VISUAL cropResistant
caac92d0d0c00000

Análisis de Código

Risk Score 100/100
Nivel de Amenaza ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info
WebSocket C2

🔬 Threat Analysis Report

• Amenaza: Ataque de phishing
• Objetivo: Usuarios de criptomonedas
• Método: Herramienta de airdrop maliciosa
• Exfil: wss://relay.walletconnect.org, wss://rpc.vscblockchain.org
• Indicadores: Discordancia de dominio, Ofuscación de JavaScript, Formulario presente
• Riesgo: Alto

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • POST

📊 Desglose de Puntuación de Riesgo

Total Risk Score
90/100

Contributing Factors

Domain Suspicion
Domain name does not align with a known legitimate service. Domain age is relatively low.
JavaScript Obfuscation
Detected JavaScript obfuscation, a common technique used by attackers to hide malicious code. Uses atob, fromCharCode, and unescape.
Form with Sensitive Data
The site has forms asking for wallet details. This could be used for malicious purposes and theft.

🔬 Análisis Integral de Amenazas

Tipo de Amenaza
Banking Credential Harvester
Objetivo
General public
Método de Ataque
credential harvesting forms + real-time WebSocket exfiltration + obfuscated JavaScript
Canal de Exfiltración
WebSocket (2 endpoints)
Evaluación de Riesgo
CRITICAL - Automated credential harvesting with WebSocket (2 endpoints)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 207 obfuscation techniques

🏢 Análisis de Suplantación de Marca

Impersonated Brand
BANK (likely not legit)
Fake Service
Airdrop tool

Fraudulent Claims

⚔️ Metodología de Ataque

Primary Method: Wallet phishing/Malicious airdrop

The site pretends to be a tool for airdropping tokens. It prompts users to connect their wallets and input wallet addresses and amounts, which could lead to unauthorized access to funds or the stealing of private keys.

Target Blockchain
Vector Smart Chain

🌐 Indicadores de Compromiso de Infraestructura

Domain Information

Dominio
airdrop.bankofvector.com
Registered
2024-08-16
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensé que me pasaría a mí"
Esto dicen las 2.3 millones de víctimas cada año. No esperes a ser una estadística.