Security Scan Report: tonsquare-dapp.vercel.app

Site favicon
Submitted: Sep 27, 2026, 12:50:43 AMCompleted: Sep 27, 2026, 12:52:50 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Unranked Vercel crypto 'Access Key' dApp with wallet-connect and blockchain RPC, flagged as phishing on the primary domain and firing 10 CRITICAL EtherHiding malware IDS alerts. Do not connect a wallet.

Risk Factors (5)
Threat-intel phishing match on the primary domain
Ten CRITICAL network IDS malware alerts (EtherHiding Exfil) indicating blockchain-hosted payload/exfiltration behaviour
Blockchain RPC + wallet-connect flow consistent with wallet-drainer pattern
Crypto access-key/NFT claim funnel using referrals and whitelists on an unranked hosting subdomain
Unknown-age tenant on a shared hosting platform (no reputation to rely on)
Domain age information unavailable

Details

Page Title

Key Add-on Program | TONSquare

Scan Type

public

Domain Name Analysis

You're looking at domain 'tonsquare-dapp.vercel.app' on the application-focused generic top-level domain (.app) and includes subdomain 'tonsquare-dapp'. The core label 'vercel' covers 6 characters with 2 vowels and 4 consonants. Segmentation suggests 2 words: ver, cel. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tonsquare-dapp.vercel.app/en/access-key

Page Load Overview

18.97s
Total Load Time
6.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:973 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency45% confidence
Type: dynamic
Method: structural

All Detected Categories

cryptocurrency
45%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2864.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3142.250.154.97Google · CDNUnited States
AS15169Google LLC
334.160.81.0Google · CDNKansas City, Missouri, United States
AS396982Google LLC
3185.199.110.133Fastly · CDNUnited States
AS54113Fastly, Inc.
345.196.29.102Cloudflare · CDNSeychelles
AS13335Cloudflare, Inc.
3104.26.3.107Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
375.2.60.5Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3104.26.1.199Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.67.71.168Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
16948--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17073E76F7502DC1A69B7CC89203A6F3AD049C977C73AC82DE28CC97A12D2C7E4F69554

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:7qGTKEm43vwLz08b8FGUDnfuOpZAAyLt01bMFwDfbtvHBVGpGH+AXAprEA6Afjqs:WGTKEfu488FbDnfuOpZAAcCVMFwLbtfs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:75673:BiA0VZDyUMDhZHyZ2MiIhZIRsNkI6hgD2EoQLXBJCIUBo9EgJgKALo2IBCIkAQAOY4ggGMIBkA7AZKcAwSCAwsJYOpSBAikh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f9e7fff1f0f1f4ff
Perceptual Hash:edb39269699a8a4c
Difference Hash:49cc282327232465
Wavelet Hash:b9e6f690f090f0f0
Color Hash:#ac5391

Other Hashes

Crop Resistant:49cc282327232465

Scan History

Scan history not available

Unable to load historical scan data