EN ES PT
Back to Stats

Captura Visual

No screenshot available

Informações de Detecção

https://airdrop.bankofvector.com/
Detected Brand
Unknown
Country
International
Confiança
100%
HTTP Status
200
Report ID
bcc177e6-83a…
Analyzed
2026-02-27 17:26

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T10222833161911A3F496BCBE8B1B8F32A65AEC31EC92BC059F6DC43721BCBD01DD12588
CONTENT ssdeep
192:aWvZunTYzgyes6YvYipkzaRZJ/YhOlrusJ/:ZhunTY+YvYWk2lYqus9

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
c1a13f2dc5352de1
VISUAL aHash
03047e7e78780000
VISUAL dHash
caac92d0d0c00000
VISUAL wHash
026f7e7e7878e0c0
VISUAL colorHash
11007000000
VISUAL cropResistant
caac92d0d0c00000

Análise de Código

Risk Score 100/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info
WebSocket C2

🔬 Threat Analysis Report

• Ameaça: Ataque de phishing
• Alvo: Usuários de criptomoeda
• Método: Ferramenta de airdrop maliciosa
• Exfil: wss://relay.walletconnect.org, wss://rpc.vscblockchain.org
• Indicadores: Incompatibilidade de domínio, Ofuscação de JavaScript, Formulário presente
• Risco: Alto

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • POST

📊 Detalhamento da Pontuação de Risco

Total Risk Score
90/100

Contributing Factors

Domain Suspicion
Domain name does not align with a known legitimate service. Domain age is relatively low.
JavaScript Obfuscation
Detected JavaScript obfuscation, a common technique used by attackers to hide malicious code. Uses atob, fromCharCode, and unescape.
Form with Sensitive Data
The site has forms asking for wallet details. This could be used for malicious purposes and theft.

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Banking Credential Harvester
Alvo
General public
Método de Ataque
credential harvesting forms + real-time WebSocket exfiltration + obfuscated JavaScript
Canal de Exfiltração
WebSocket (2 endpoints)
Avaliação de Risco
CRITICAL - Automated credential harvesting with WebSocket (2 endpoints)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Banking, Personal Info
  • 207 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
BANK (likely not legit)
Fake Service
Airdrop tool

Fraudulent Claims

⚔️ Metodologia de Ataque

Primary Method: Wallet phishing/Malicious airdrop

The site pretends to be a tool for airdropping tokens. It prompts users to connect their wallets and input wallet addresses and amounts, which could lead to unauthorized access to funds or the stealing of private keys.

Target Blockchain
Vector Smart Chain

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
airdrop.bankofvector.com
Registered
2024-08-16
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.