EN ES PT
Back to Stats

Captura Visual

Screenshot of app.solstsicse.finance

Información de Detección

https://app.solstsicse.finance/
Detected Brand
Solstice Finance
Country
International
Confianza
95%
HTTP Status
200
Report ID
c42624ef-c3d…
Analyzed
2026-06-19 23:50

Hashes de Contenido (Similitud HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AEE3B9362342242E235F07D0B6E0EF6D52ABE245CE578D6E73EC24B19FC9DD09DA5188
CONTENT ssdeep
1536:9d7Owq8T9LF5FXN7jBQ+Cwrayj/z//vW/vs/4hOPJCCcvLSyt73:CwthFXpayvvs5mXcjSyt7

Hashes Visuales (Similitud de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
dffd66da18259880
VISUAL aHash
80809c9c9c9c8080
VISUAL dHash
2228383838390638
VISUAL wHash
c0dcfe9f9cbcc080
VISUAL colorHash
38000430000
VISUAL cropResistant
00047ab2b2320400,2228383838390638

Análisis de Código

Risk Score 59/100
Nivel de Amenaza ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Amenaza: Phishing de criptomonedas (Wallet Drainer)
• Objetivo: Usuarios de Solstice Finance
• Método: Typosquatting/Estafa de Airdrop
• Exfil: Firma de contratos de billetera
• Indicadores: JS ofuscado, dominio typosquatting
• Riesgo: Crítico

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape

📡 API Calls Detected

  • POST

📊 Desglose de Puntuación de Riesgo

Total Risk Score
95/100

Contributing Factors

Typosquatting
Domain uses a letter transposition to impersonate a brand.
Malicious Scripting
Detection of obfuscated drainer code.

🔬 Análisis Integral de Amenazas

Tipo de Amenaza
Two-Factor Authentication Stealer
Objetivo
Solstice Finance users (International)
Método de Ataque
Brand impersonation + credential harvesting forms + obfuscated JavaScript
Canal de Exfiltración
Form submission (backend endpoint not detected - likely JavaScript-based)
Evaluación de Riesgo
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 12 obfuscation techniques

🏢 Análisis de Suplantación de Marca

Impersonated Brand
Solstice Finance
Official Website
https://solstice.finance/
Fake Service
Token staking/Airdrops

Fraudulent Claims

⚔️ Metodología de Ataque

Primary Method: Crypto Wallet Drainer

The site prompts users to connect their Web3 wallet. Once connected, malicious scripts request permissions to drain tokens or NFTs.

Secondary Method: Typosquatting

Uses a deceptive URL to trick users into thinking they are on the official financial platform.

Target Blockchain
Solana

🌐 Indicadores de Compromiso de Infraestructura

Domain Information

Dominio
app.solstsicse.finance
Registered
Unknown
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensé que me pasaría a mí"
Esto dicen las 2.3 millones de víctimas cada año. No esperes a ser una estadística.