Security Scan Report: andex.vercel.app

Site favicon
Submitted: Sep 26, 2026, 11:50:54 AMCompleted: Sep 26, 2026, 11:52:54 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Threat intelligence flags the primary domain as a wallet drainer phishing site; combined with a phishing external link and abused-hosting IDS alerts, avoid connecting a wallet.

Risk Factors (4)
Primary-domain threat-intel match for wallet drainer phishing
External link to a domain independently reported as phishing
IDS alerts for abused cloud hosting service domain
DeFi wallet-connection interface with suspicious JavaScript Function constructor usage
Domain age information unavailable

Details

Page Title

Andex

Scan Type

public

Domain Name Analysis

You're looking at domain 'andex.vercel.app' on the application-focused generic top-level domain (.app), featuring subdomain 'andex'. Count 6 characters in 'vercel' containing two vowels alongside 4 consonants. Segmentation suggests 2 words: ver, cel. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://andex.vercel.app/terms-of-service

Page Load Overview

12.02s
Total Load Time
3.0 MB
Total Size

Language Analysis

Primary Language

馃嚭馃嚫English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Text Length:26,782 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain96% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
96%
phishing scam
61%
technology software
61%
finance banking
40%
documentation technical
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11216.198.79.67Aws 路 CLOUDUnited States
AS16509Amazon.com, Inc.
4142.251.20.95Google 路 CDNUnited States
AS15169Google LLC
4104.20.30.246Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
4142.251.110.94Google 路 CDNUnited States
AS15169Google LLC
4172.66.167.201Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
4104.26.13.125Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
4142.251.110.97Google 路 CDNUnited States
AS15169Google LLC
4104.26.2.169Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
4172.67.75.76Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
4172.66.147.126Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
8720--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T193A48571434A6F2E011DBBB184F86EFE6619004A8C77BB7587B586EE913DF1BC484278

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:p7ZlOP2TG8VfbCRBSl1MYvVSZHosbOTqtWT083QeCyidZQO6fjzuDO2:4eTG8cBuVS2eWT083QeCyidZQO6fjg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:455489:gAFTEMgUqi4iyEZMqFEEYO5VCgECGFAVUgDxAoCVdQSACuCB4oFQeQg9IWCAw9QgB6QEjSEXKQAkhiAQiVRdRRiFmBClAMCE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffe7e7e7efe7ef
Perceptual Hash:f15d5d4c4d666922
Difference Hash:82189d8d8d9c0c1c
Wavelet Hash:00c7c3c7c3c7c3c7
Color Hash:#c5a487

Scan History

Scan history not available

Unable to load historical scan data