Security Scan Report: gmxauthe.vercel.app

Site favicon
Submitted: Sep 26, 2026, 4:50:33 AMCompleted: Sep 26, 2026, 4:52:52 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 90%

10
Risk Score

Confirmed credential phishing: gmxauthe.vercel.app impersonates GMX and collects email/password credentials. Do not enter login details; report the page.

Risk Factors (5)
Impersonates GMX on a non-GMX domain
Credential-harvesting login form (email + password)
Single-source phishing threat-intel match on primary domain
Hosted on shared Vercel subdomain with unknown creation date
IDS alerts for actor-abused cloud hosting service domain
Domain age information unavailable

Details

Page Title

Free Email Accounts @GMX.com: Secure & easy to use

Scan Type

public

Domain Name Analysis

The domain name 'gmxauthe.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'gmxauthe'. Its registrable label 'vercel' stretches across 6 characters split between two vowels and 4 consonants. Breaking it apart gives 2 words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://gmxauthe.vercel.app/

Page Load Overview

18.06s
Total Load Time
1.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:5,864 chars
Detector Agreement:80%

Website Classification

Primary Category

healthcare medical71% confidence
Type: spa
Method: ml+structural

All Detected Categories

healthcare medical
71%
technology software
63%
cryptocurrency blockchain
62%
documentation technical
49%
corporate business
40%

Detected Features

Login Form
Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1364.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
723.52.180.183Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
723.209.208.242Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
7104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
7142.251.14.97Google · CDNUnited States
AS15169Google LLC
723.219.138.234Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
7136.243.25.122Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
7136.243.25.82Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
7217.72.199.24Germany
AS8560IONOS SE
7217.79.188.59Germany
AS24961WIIT AG
8311--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DE84C81A56F72D646823617C5FBF66087360A013A90FFD04BDCD62858FC9AA165B3BCC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:PTfborN04rFjNVo9JO1usVUkRYixu+ZmwbXUxA7C3xNjffE6cOUSkB27OJm7ISK9:FZ+ZmwbXUxA7C3gOOJm7I7Nz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:390858:BCpMtKCBaSFiwKG2gEGAGcJB0UwA8wBkGCIVgM0iiHGEmAgKCisB7BGMgRERoEBAAEIEAMhFMIlUmWj8A9MA1JJBfAMCAjKO

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0337ffffffffffff
Perceptual Hash:a72426263e372e37
Difference Hash:66e6801800080808
Wavelet Hash:00087cecfcececec
Color Hash:#87c5bb

Scan History

Scan history not available

Unable to load historical scan data