Security Scan Report: sanbankbrdigital-dp76j3k606ve.edgeone.dev

Submitted: Sep 23, 2026, 1:38:39 PMCompleted: Sep 23, 2026, 1:40:57 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Brazilian bank phishing kit impersonating Itaú/Bradesco on a free edgeone.dev subdomain, harvesting account and password credentials through fake login, Pix, boleto and loan screens.

Risk Factors (5)
Brand impersonation of Itaú/Bradesco on a non-official domain
Credential-harvesting login and password-reset flows (5 password fields)
Anonymous free-hosting subdomain with no verifiable ownership
Admin panel and fake transaction/Pix/boleto modules typical of phishing kits
External resource flagged for gitbait malware activity
Domain age information unavailable

Details

Page Title

Sanbank BR Digital - Estilo Itaú em modo escuro

Scan Type

public

Domain Name Analysis

Domain 'sanbankbrdigital-dp76j3k606ve.edgeone.dev' uses the developer-focused generic top-level domain (.dev) and includes subdomain 'sanbankbrdigital-dp76j3k606ve'. The core label 'edgeone' covers 7 characters containing 4 vowels alongside 3 consonants. Segmentation suggests two words: edge, one. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sanbankbrdigital-dp76j3k606ve.edgeone.dev/

Page Load Overview

92.68s
Total Load Time
1.3 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-BR
Text Length:32,487 chars
Detector Agreement:100%

Website Classification

Primary Category

blog personal website93% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

blog personal website
93%
finance banking
93%
technology software
91%
documentation technical
90%
cryptocurrency blockchain
88%

Detected Features

Search
Payment

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13643.174.247.29Singapore
134142.251.13.95Google · CDNUnited States
AS15169Google LLC
134104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
134104.18.0.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
13445.43.142.2United Kingdom
AS16276OVH SAS
13443.174.246.29Singapore
134104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
13445.43.142.3United Kingdom
AS16276OVH SAS
134192.178.183.94Google · CDNUnited States
AS15169Google LLC
134159.89.254.93Clifton, New Jersey, United States
AS14061DigitalOcean, LLC
161012--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16A01C277B40494696600C6816CC1B55AEC9A402D3BC95A61BEB3066EE8A47DA81B658C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hZ5OupfRW7GTDJACnN/KnN/kcNof0Zc6DfCUTpfmNVG:fouppdTDJhN6NkOdKsz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:832:AQAAAAAEAAAAAAAAIAAABQAAIAABBAAABAAAAAAAAAAAAAAAAACACAAEAAAAAAAAAAgAAAAwAAEAAAAACIAAAAAAAAAAAAgA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:420018187c180000
Perceptual Hash:cdb832c3c73838c7
Difference Hash:82a292f2e0b0c0e0
Wavelet Hash:ffff7e187e180000
Color Hash:#40bf62

Other Hashes

Crop Resistant:82a292f2e0b0c0e0

Scan History

Scan history not available

Unable to load historical scan data