Security Scan Report: crrropndehilokrtmur.vercel.app

Redirected to:
https://crrropndehilokrtmur.vercel.app/index.html?lang=en
Submitted: Sep 22, 2026, 12:45:09 AMCompleted: Sep 22, 2026, 12:45:37 AMpubliccompleted

This website contacted 8 IPs in 3 countries across 6 domains to perform 27 HTTP transactions. The main domain is crrropndehilokrtmur.vercel.app and was registered 13 years ago.

Submitted URL: https://crrropndehilokrtmur.vercel.app/index.html

Effective URL:

https://crrropndehilokrtmur.vercel.app/index.html?lang=en
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake 'Facebook' security page on a random vercel.app subdomain harvesting passwords and 2FA codes — clear credential-phishing brand impersonation. Do not enter credentials.

Risk Factors (5)
Impersonation of Facebook brand on a non-Meta domain
Password/credential capture form (3 password fields, 2 username/email fields)
Fabricated account-security / two-factor confirmation workflow to harvest codes
Cross-origin IP-geolocation lookups used to personalize the phishing lure
Hosted on shared platform subdomain with no verifiable age or reputation
Domain age information unavailable

Details

Page Title

Facebook

Scan Type

public

Domain Name Analysis

You're looking at domain 'crrropndehilokrtmur.vercel.app' on the application-focused generic top-level domain (.app); it also runs on subdomain 'crrropndehilokrtmur'. Its registrable label 'vercel' stretches across 6 characters holding two vowels versus 4 consonants. Word splitting yields 2 words: ver, cel. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://crrropndehilokrtmur.vercel.app/index.html

Page Load Overview

5.09s
Total Load Time
40 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,504 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network55% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
55%
technology software
42%
documentation technical
33%
education learning
30%
adult content
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6216.198.79.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3104.20.44.133Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.66.175.107Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
364.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3188.68.242.180Olsztyn, Warmia-Masuria, Poland
AS197226sprint S.A.
346.225.52.25Nuremberg, Bavaria, Germany
AS24940Hetzner Online GmbH
3104.26.9.44Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
334.117.59.81Google · CDNKansas City, Missouri, United States
AS396982Google LLC
278--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B4F22B65B0A5163EE6FB0AE830A717887438810AFC864045BDBF5F68D596CC77933B9C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:BgDb33Wsuawznevtzczu8kKunWQ+umuP0mSbqqYRpYDsT1vCbvs6vJEBLwaVYGnC:3iv+TFaVt5zon

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:34286:oCaGEtQC/AIJSJUACUAAgCc+IoiQSYy8WEhQhCAXFKQmEBmzhcTugcIBDKMEkQIUuiAOEgSRg0BFTKcADPiFEJEuAdKBEVnd

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00fffff3ffffffff
Perceptual Hash:ec581b7a6c643333
Difference Hash:22d0582604000000
Wavelet Hash:003cccf0c0e4fcfc
Color Hash:#bf9540

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data