Security Scan Report: metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app

Redirected to:
https://metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app/embedded...
Site favicon
Submitted: Aug 13, 2026, 2:45:27 PMCompleted: Aug 13, 2026, 2:48:20 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 4 domains to perform 2 HTTP transactions. The main domain is metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app and was registered NaN years ago.

Submitted URL: http://metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app/embedded-wallets/troubleshooting

Effective URL: https://metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app/embedded-wallets/troubleshooting/Redirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

The site hosts high‑severity malicious JavaScript (WebSocket C2) and is flagged by Safe Browsing and threat intel as phishing, warranting a high‑risk classification.

Risk Factors
Malicious JavaScript with command‑and‑control capability
Safe Browsing social‑engineering warning
Phishing indicator from threat‑intel feeds
Unranked, unknown‑age subdomain on a hosting platform
Heavy code obfuscation and eval() usage
Domain age information unavailable

Details

Page Title

Troubleshooting with MetaMask Embedded Wallets | MetaMask developer documentation

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(91%)

Domain Information

Domain 'metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'metamask-docs-l8lvh00ol-consensys-ddffed67'. Count 6 characters in 'vercel' containing two vowels alongside 4 consonants. Segmentation suggests 2 words: ver, cel. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://metamask-docs-l8lvh00ol-consensys-ddffed67.vercel.app/embedded-wallets/troubleshooting

Page Load Overview

9.70s
Total Load Time
21
HTTP Requests
4
Domains
1.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,555 chars
Detector Agreement:80%

Website Classification

Primary Category

technology software91% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
91%
documentation technical
85%
cryptocurrency blockchain
42%
corporate
35%
cryptocurrency
30%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
664.239.109.1United States
AS16509Amazon.com, Inc.
5216.198.79.67United States
AS16509Amazon.com, Inc.
518.245.31.35Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
5104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
214--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BAD30832E1D0313FA95B439EDB91AB54B27BD4DBC98E22D2B35C825007C2AC9796743D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:Fyhv9iNntPosgumqm489R+ri9lOogTsX/Hj99saiSSa9EGrqOeyz7Vc:FdNntPosgumqmITsXPj99sW2T

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:136051:RQAEF6gg2LHIYqYKgRQheIUSK+gEVLCEeMQAVwKAuYK1AgKB4GMaFwCwCgyBQOCCQQKkiIohPosQSWxQw6gjkcXOFQshQoSI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7e07838f872f5f7f
Perceptual Hash:b474c2c3d1d8e36c
Difference Hash:e8ae3e3c3eceb4cc
Wavelet Hash:3e030387822f5f6f
Color Hash:#2d6a86

Other Hashes

Crop Resistant:e8ae3e3c3eceb4cc

Scan History

Scan history not available

Unable to load historical scan data