Security Scan Report: violent-violet-zfco3dic-dptxafo643wm.edgeone.dev

Submitted: Sep 21, 2026, 8:58:12 PMCompleted: Sep 21, 2026, 8:58:33 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

5
Risk Score

Cloned Next.js/Vercel marketing page on an unrelated edgeone.dev subdomain with a mirrored-website IDS signature; no credential or payment forms, so suspicious brand impersonation rather than active phishing.

Risk Factors (3)
Impersonation of the Next.js/Vercel brand on a non-official domain
Mirrored/cloned website flagged by informational IDS phishing signature
Unknown-age subdomain on a shared hosting platform (edgeone.dev)
Safety Factors (4)
No credential, password, or payment fields — no data-harvesting form on the page
No JavaScript malware (YARA) matches and no credential exfiltration detected
Threat-intel matches are generic abuse-reputation tags on shared IPs, not content-malware indicators
No cross-origin form submissions or malicious JS network sinks
Domain age information unavailable

Details

Page Title

Next.js by Vercel - The React Framework

Scan Type

public

Domain Name Analysis

The domain 'violent-violet-zfco3dic-dptxafo643wm.edgeone.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'violent-violet-zfco3dic-dptxafo643wm'. The core label 'edgeone' covers 7 characters containing 4 vowels alongside 3 consonants. It segments into two words: edge, one. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://violent-violet-zfco3dic-dptxafo643wm.edgeone.dev/

Page Load Overview

2.87s
Total Load Time
532 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:7,797 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
39%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1843.174.246.29Singapore
1743.174.247.29Singapore
352--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150C1ED039CED8E197862A4C1C912F34DE54EA133D4244D5EF22CB4AA2F48DDA239F57E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S/mW7WJWAWZW5GzcMp3RFRiXcVvr9nqOfmgVTDZqZJ5ORg2r:SOW7WJWAWZW5GzcMp3RFRiXcVvr9nqOp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5946:GIAwDoMjACKSCBIIAIsAwIAEIDCIAgASEoCHACoXRMkaiCACAADAAlQCBASBBEkCCAMIOeKwgXAAYZ4EVwNlBAggAEAUQYBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcc381efe7ffffcf
Perceptual Hash:b368ccc393cc683b
Difference Hash:41220b0c0a001496
Wavelet Hash:888081c3e7f7ff42
Color Hash:#78563a

Other Hashes

Crop Resistant:41220b0c0a001496

Scan History

Scan history not available

Unable to load historical scan data