Security Scan Report: itau-landing.vercel.app

Site favicon
Submitted: Sep 26, 2026, 8:50:19 PMCompleted: Sep 26, 2026, 8:51:13 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake Banco Itaú banking page on itau-landing.vercel.app, a domain the bank does not own. Brand impersonation plus a single-source phishing report; no forms captured, but clearly a phishing lure. Avoid.

Risk Factors (4)
Impersonation of a major Brazilian bank (Banco Itaú) on a domain it does not own
Primary domain flagged as phishing by threat intelligence
Suspicious banking-account landing content designed to look like a logged-in Itaú portal
Hosted on an abusable free cloud hosting platform (vercel.app) with unknown creation date
Domain age information unavailable

Details

Page Title

Banco Itaú | Feito com você

Scan Type

public

Domain Name Analysis

Domain 'itau-landing.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'itau-landing'. The second-level label 'vercel' is 6 characters long holding two vowels versus 4 consonants. It segments into two words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://itau-landing.vercel.app/

Page Load Overview

1.66s
Total Load Time
1.1 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-br
Text Length:704 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking97% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
97%
corporate business
91%
government public service
50%
technology software
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1364.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
12216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
252--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T104929235B406DE1EE9272D45243E9D35A08DEA17CF57EC5AD2ECE81216C38716FE24C8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:0uY9eE33hvxY5ykLJKQvVvxZZHyZ7vvR4/m:0uY9eE33hJYck9K4vxZZS1v4m

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20512:QApERJLkpFUwYAEH8kBEiwdGAEqJAo5IEQIgQEpxhBoAIdAEooZ0IAoKOIQxDHOkLLRIsx7AWwCUKIgm6QkrIcABCPSDjBYM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000303070f03ffff
Perceptual Hash:a504ed12db9266db
Difference Hash:78d6d6d4daf6e402
Wavelet Hash:0003030f1f07ffff
Color Hash:#8f1f93

Scan History

Scan history not available

Unable to load historical scan data