Security Scan Report: itau-landing.vercel.app

Redirected to:
https://itau-landing.vercel.app/
Site favicon
Submitted: Sep 26, 2026, 7:50:46 PMCompleted: Sep 26, 2026, 7:52:39 PMpubliccompleted

This website contacted 2 IPs in 1 country across 1 domain to perform 26 HTTP transactions. The main domain is itau-landing.vercel.app and was registered 6 years ago.

Submitted URL: http://itau-landing.vercel.app/

Effective URL:

https://itau-landing.vercel.app/
Redirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake Banco Itaú banking page on itau-landing.vercel.app, a domain the bank does not own. Brand impersonation plus a single-source phishing report; no forms captured, but clearly a phishing lure. Avoid.

Risk Factors (4)
Impersonation of a major Brazilian bank (Banco Itaú) on a domain it does not own
Primary domain flagged as phishing by threat intelligence
Suspicious banking-account landing content designed to look like a logged-in Itaú portal
Hosted on an abusable free cloud hosting platform (vercel.app) with unknown creation date
Domain age information unavailable

Details

Page Title

Banco Itaú | Feito com você

Scan Type

public

Domain Name Analysis

The domain name 'itau-landing.vercel.app' uses the application-focused generic top-level domain (.app) with subdomain 'itau-landing'. The second-level label 'vercel' is 6 characters long split between two vowels and 4 consonants. Word splitting yields two words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://itau-landing.vercel.app/

Page Load Overview

6.85s
Total Load Time
1.1 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-br
Text Length:704 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking97% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
97%
corporate business
91%
government public service
50%
technology software
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1364.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
262--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T104929235B406DE1EE9272D45243E9D35A08DEA17CF57EC5AD2ECE81216C38716FE24C8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:0uY9eE33hvxY5ykLJKQvVvxZZHyZ7vvR4/m:0uY9eE33hJYck9K4vxZZS1v4m

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20512:QApERJLkpFUwYAEH8kBEiwdGAEqJAo5IEQIgQEpxhBoAIdAEooZ0IAoKOIQxDHOkLLRIsx7AWwCUKIgm6QkrIcABCPSDjBYM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000303070f03ffff
Perceptual Hash:a504ed12db9266db
Difference Hash:78d6d6d4daf6e402
Wavelet Hash:0003030f1f07ffff
Color Hash:#79d29d

Scan History

Scan history not available

Unable to load historical scan data