EN ES PT
Back to Stats

Captura Visual

Screenshot of app.solstsicse.finance

Informações de Detecção

https://app.solstsicse.finance/
Detected Brand
Solstice Finance
Country
International
Confiança
95%
HTTP Status
200
Report ID
c42624ef-c3d…
Analyzed
2026-06-19 23:50

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AEE3B9362342242E235F07D0B6E0EF6D52ABE245CE578D6E73EC24B19FC9DD09DA5188
CONTENT ssdeep
1536:9d7Owq8T9LF5FXN7jBQ+Cwrayj/z//vW/vs/4hOPJCCcvLSyt73:CwthFXpayvvs5mXcjSyt7

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
dffd66da18259880
VISUAL aHash
80809c9c9c9c8080
VISUAL dHash
2228383838390638
VISUAL wHash
c0dcfe9f9cbcc080
VISUAL colorHash
38000430000
VISUAL cropResistant
00047ab2b2320400,2228383838390638

Análise de Código

Risk Score 59/100
Nível de Ameaça ALTO
⚠️ Phishing Confirmed
🎣 OTP Stealer

🔬 Threat Analysis Report

• Ameaça: Phishing de criptomoedas (Wallet Drainer)
• Alvo: Usuários do Solstice Finance
• Método: Typosquatting/Golpe de Airdrop
• Exfil: Assinatura de contratos da carteira
• Indicadores: JS ofuscado, domínio typosquatting
• Risco: Crítico

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape

📡 API Calls Detected

  • POST

📊 Detalhamento da Pontuação de Risco

Total Risk Score
95/100

Contributing Factors

Typosquatting
Domain uses a letter transposition to impersonate a brand.
Malicious Scripting
Detection of obfuscated drainer code.

🔬 Análise Integral de Ameaças

Tipo de Ameaça
Two-Factor Authentication Stealer
Alvo
Solstice Finance users (International)
Método de Ataque
Brand impersonation + credential harvesting forms + obfuscated JavaScript
Canal de Exfiltração
Form submission (backend endpoint not detected - likely JavaScript-based)
Avaliação de Risco
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: OTP Stealer
  • 12 obfuscation techniques

🏢 Análise de Falsificação de Marca

Impersonated Brand
Solstice Finance
Official Website
https://solstice.finance/
Fake Service
Token staking/Airdrops

Fraudulent Claims

⚔️ Metodologia de Ataque

Primary Method: Crypto Wallet Drainer

The site prompts users to connect their Web3 wallet. Once connected, malicious scripts request permissions to drain tokens or NFTs.

Secondary Method: Typosquatting

Uses a deceptive URL to trick users into thinking they are on the official financial platform.

Target Blockchain
Solana

🌐 Indicadores de Compromisso de Infraestrutura

Domain Information

Domínio
app.solstsicse.finance
Registered
Unknown
Registrar
Unknown
Estado
Active

🤖 AI-Extracted Threat Intelligence

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.