Security Scan Report: ar24-sigma.vercel.app

Submitted: Sep 19, 2026, 7:51:24 AMCompleted: Sep 19, 2026, 7:51:43 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Confirmed AR24 phishing kit on ar24-sigma.vercel.app: fake login form exfiltrates email/password to Telegram, DevTools blocked, and the domain is flagged as phishing by multiple feeds.

Risk Factors
Credential exfiltration to external Telegram endpoint via sendToTelegram()
Impersonation of AR24 brand on non-official vercel.app subdomain
Credential/password login form on a brand-impersonating domain
Anti-analysis: DevTools/right-click blocking alongside credential harvesting
Multi-source phishing indicator on the primary domain
Domain age information unavailable

Details

Page Title

Connexion - AR24

Scan Type

public

Domain Name Analysis

The domain name 'ar24-sigma.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'ar24-sigma'. Its registrable label 'vercel' stretches across 6 characters containing 2 vowels alongside four consonants. Segmentation suggests 2 words: ver, cel. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ar24-sigma.vercel.app/

Page Load Overview

0.59s
Total Load Time
60 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr
Text Length:1,386 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical65% confidence
Type: webapp
Method: ml+structural

All Detected Categories

documentation technical
65%
government public service
62%
download file sharing
53%
corporate business
42%
blog personal website
36%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1185.183.140.161France
AS211068AR24 SAS
1104.237.62.213El Segundo, California, United States
AS18450WebNX, Inc.
1185.183.140.162France
AS211068AR24 SAS
74--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EEB2F91228F31D2659A7D1A63B9353C63021D003A517CA84B6DD33A48FCFE968EA37DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:1d5cNG8u2N/2NzwBikjzgJWBJ1nU1Yae1bSf3ylGIddwypNB5:9/rM/2ZYzgJWhnSYaybSf3yvwg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24564:W4AAIoDkiASkHAIJIYIxoYCKoZxGAMupAAOkp5EVkyAxCaCcwtgZQUpxSEDcR0hIIaDsBBBIBbdCAwAQgRELSCwFEkJEI8IE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefefefefefefeff
Perceptual Hash:d555aa55aaa855aa
Difference Hash:0202020202020000
Wavelet Hash:0e0e0e0e0c0c0c0d
Color Hash:#bf9540

Other Hashes

Crop Resistant:0202020202020000

Scan History

Scan history not available

Unable to load historical scan data