Security Scan Report: occasional-gold-erkeorek-dph5837i0553.edgeone.dev

Submitted: Sep 12, 2026, 3:33:18 PMCompleted: Sep 12, 2026, 3:33:40 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 58%

5
Risk Score

Mirrored Next.js/Vercel homepage on an unknown-age edgeone.dev subdomain and an informational mirrored-site IDS alert. No login, password or payment form, no YARA malware or exfiltration; abuse-reputation IP tags alone are not content evidence.

Risk Factors
Non-official domain serving a verbatim copy of a branded framework vendor's (Next.js/Vercel) homepage
Free/instant hosting-platform subdomain with unknown creation date and no reputation
Safety Factors
No credential form: password fields = 0, disguised-password fields = 0 (verified DOM form counts)
No payment/card fields and no cross-origin credential harvesting
No JavaScript YARA malware patterns and no known malicious kit in the roster
No credential exfiltration and no cross-origin JS network targets
Only form is a single same-origin newsletter email subscription (action '/home')
No redirects; content is static framework documentation/marketing, consistent with a deployed default/template Next.js project
Domain age information unavailable

Details

Page Title

Next.js by Vercel - The React Framework

Scan Type

public

Domain Name Analysis

Within the developer-focused generic top-level domain (.dev), 'occasional-gold-erkeorek-dph5837i0553.edgeone.dev' is registered with subdomain 'occasional-gold-erkeorek-dph5837i0553'. Its registrable label 'edgeone' stretches across 7 characters with four vowels and 3 consonants. Breaking it apart gives 2 words: edge, one. The median word length lands at 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://occasional-gold-erkeorek-dph5837i0553.edgeone.dev/

Page Load Overview

4.01s
Total Load Time
545 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:7,797 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
39%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1843.174.247.29Singapore
1743.174.246.29Singapore
352--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150C1ED039CED8E197862A4C1C912F34DE54EA133D4244D5EF22CB4AA2F48DDA239F57E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S/mW7WJWAWZW5GzcMp3RFRiXcVvr9nqOfmgVTDZqZJ5ORg2r:SOW7WJWAWZW5GzcMp3RFRiXcVvr9nqOp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5946:GIAwDoMjACKSCBIIAIsAwIAEIDCIAgASEoCHACoXRMkaiCACAADAAlQCBASBBEkCCAMIOeKwgXAAYZ4EVwNlBAggAEAUQYBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcc381efe7ffffcf
Perceptual Hash:b368ccc393cc683b
Difference Hash:41220b0c0a001496
Wavelet Hash:888081c3e7f7ff42
Color Hash:#87c598

Other Hashes

Crop Resistant:41220b0c0a001496

Scan History

Scan history not available

Unable to load historical scan data