Security Scan Report: patient-pink-dt8ffzzy-dplem3z3srly.edgeone.dev

Submitted: Sep 19, 2026, 10:40:53 AMCompleted: Sep 19, 2026, 10:41:15 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 60%

6
Risk Score

Exact mirror of the Next.js/Vercel homepage on a non-Vercel EdgeOne subdomain; ET PHISHING mirrored-site IDS alert but no credential or payment forms, no malware, and only generic abuse-reputation IP tags.

Risk Factors (3)
Mirrored copy of a legitimate vendor site (Next.js/Vercel) hosted on an unrelated free subdomain
ET PHISHING mirrored-website IDS alert (informational, single alert)
Hosting-platform subdomain with unknown, potentially recent creation date
Safety Factors (4)
No password, disguised-password, or payment fields (verified form facts: 0/0/0)
No JavaScript malware, YARA, or kit-roster hits
No cross-origin credential submission or exfiltration detected
Content is a static framework/documentation page presenting no immediate user harm
Domain age information unavailable

Details

Page Title

Next.js by Vercel - The React Framework

Scan Type

public

Domain Name Analysis

The domain name 'patient-pink-dt8ffzzy-dplem3z3srly.edgeone.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'patient-pink-dt8ffzzy-dplem3z3srly'. Its registrable label 'edgeone' stretches across 7 characters split between four vowels and 3 consonants. Tokenizing the label suggests 2 words: edge, one. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://patient-pink-dt8ffzzy-dplem3z3srly.edgeone.dev/

Page Load Overview

3.10s
Total Load Time
532 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:7,797 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
39%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1843.174.247.29Singapore
1743.174.246.29Singapore
352--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150C1ED039CED8E197862A4C1C912F34DE54EA133D4244D5EF22CB4AA2F48DDA239F57E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S/mW7WJWAWZW5GzcMp3RFRiXcVvr9nqOfmgVTDZqZJ5ORg2r:SOW7WJWAWZW5GzcMp3RFRiXcVvr9nqOp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5946:GIAwDoMjACKSCBIIAIsAwIAEIDCIAgASEoCHACoXRMkaiCACAADAAlQCBASBBEkCCAMIOeKwgXAAYZ4EVwNlBAggAEAUQYBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcc381efe7ffffcf
Perceptual Hash:b368ccc393cc683b
Difference Hash:41220b0c0a001496
Wavelet Hash:888081c3e7f7ff42
Color Hash:#784f3a

Other Hashes

Crop Resistant:41220b0c0a001496

Scan History

Scan history not available

Unable to load historical scan data