Security Scan Report: coinbaseverify.vercel.app

Site favicon
Submitted: Sep 30, 2026, 9:50:48 AMCompleted: Sep 30, 2026, 9:51:25 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 93%

10
Risk Score

Fake Coinbase sign-in on coinbaseverify.vercel.app harvesting email/password and a 12-word wallet passphrase — a crypto phishing/drainer page impersonating Coinbase. Do not enter any credentials or seed phrase.

Risk Factors (5)
Brand impersonation of Coinbase on a mismatched, unranked domain
Password/credential capture form combined with brand impersonation (phishing shape)
Requests 12-word wallet seed/passphrase — hallmark of a crypto drainer kit
Hosted on a free shared PaaS subdomain (vercel.app) with unknown page age
Single-source threat-intel report of the domain as a known attacker
Domain age information unavailable

Details

Page Title

Coinbase - Sign In

Scan Type

public

Domain Name Analysis

The domain name 'coinbaseverify.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'coinbaseverify'. The registrable portion 'vercel' spans 6 characters with two vowels and 4 consonants. Splitting it apart reveals two words: ver, cel. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://coinbaseverify.vercel.app/

Page Load Overview

0.97s
Total Load Time
145 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:285 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain50% confidence
Type: webapp
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
50%
finance banking
38%
e-commerce shopping
29%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
664.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
132--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EA2274B22421473BA797D7B472B0BF85DC5EC31ADD77884AE6ED41A657D4CB0CA03A02

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TJSfAlq1AEhHf3zoNeSyuyirywbEgoEcF4Q7YVrZAr8YRoQyBaX17XqJw/Wls7SO:sfAlq1f5fXPi254uzYVrmrjpanforUu

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:10773:0AhhQB0UoGmiCQCQIBAgAIKhAsGFFSCERAwHUyhEkvUFCwKMADRaIBXQ5FIASFCIEORpHOkAgCURSIAqCUDTFAMAIEAgQiKE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e0f8f8d818181000
Perceptual Hash:dcc3338d26729999
Difference Hash:083030303232320c
Wavelet Hash:fcfcf8f8f8981800
Color Hash:#785b3a

Other Hashes

Crop Resistant:083030303232320c

Scan History

Scan history not available

Unable to load historical scan data