Security Scan Report: emzy-li-dpb7940xq7sj.edgeone.dev

Submitted: Sep 23, 2026, 12:45:44 PMCompleted: Sep 23, 2026, 12:47:15 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 90%

9
Risk Score

Fake example.com mail authentication portal on a free edgeone.dev subdomain that captures email and password, with victim fingerprinting and IP/geo lookups — a credential-phishing page.

Risk Factors (5)
Credential/password capture form impersonating an email authentication portal
Impersonation of example.com brand on an unrelated edgeone.dev subdomain
On-page victim fingerprinting and geolocation consistent with a phishing kit
Cross-origin IP lookup requests (ipapi.co, api.ipify.org) embedded in the page
Unknown-age free hosting platform subdomain with no reputation
Domain age information unavailable

Details

Page Title

PORTAL - example.com Mail Authentication

Scan Type

public

Domain Name Analysis

Within the developer-focused generic top-level domain (.dev), 'emzy-li-dpb7940xq7sj.edgeone.dev' is registered and includes subdomain 'emzy-li-dpb7940xq7sj'. Its registrable label 'edgeone' stretches across 7 characters containing 4 vowels alongside 3 consonants. Segmentation suggests two words: edge, one. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://emzy-li-dpb7940xq7sj.edgeone.dev/

Page Load Overview

1.32s
Total Load Time
326 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:401 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software75% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
75%
government public service
32%
documentation technical
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
443.174.247.29Singapore
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
143.174.246.29Singapore
1172.67.69.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
152.6.161.198Aws · CLOUDAshburn, Virginia, United States
AS14618Amazon.com, Inc.
1142.251.151.119Google · CDNUnited States
AS15169Google LLC
1142.251.14.103Google · CDNUnited States
AS15169Google LLC
118--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ACA2D65A09F304257523E1783FFB53083671800B9506DD28B95C5394DFC8DA26ABFBE9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:d8BIGRLRNm69g1vr1ntjbTe5VcQ2PBKemGOdDT5ghwhmVutAoSuCIdtLrJKRwq1e:mBIBfVKDEoX4sGMflldD+3P2bsBQf2OR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:21520:IAONsaBcVIQQ07MRFANHYJVAEUtYEjATSbCAwhSGgYJAIOQEJIYBQLaRiDXSJFBMgAZRiIBJBEZCEmFBkCQcKZonI2gHjkJo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000001818000000
Perceptual Hash:9c3c36c1c9c36765
Difference Hash:10322eb2b20c0000
Wavelet Hash:1f01013f1f070f0f
Color Hash:#3f3a78

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data