Security Scan Report: paytm-wallet-user-app.vercel.app

Redirected to:
https://paytm-wallet-user-app.vercel.app/signin
Site favicon
Submitted: Sep 26, 2026, 9:50:24 AMCompleted: Sep 26, 2026, 9:52:01 AMpubliccompleted

This website contacted 2 IPs in 1 country across 1 domain to perform 16 HTTP transactions. The main domain is paytm-wallet-user-app.vercel.app and was registered 6 years ago.

Submitted URL: https://paytm-wallet-user-app.vercel.app/

Effective URL:

https://paytm-wallet-user-app.vercel.app/signin
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 90%

10
Risk Score

Fake Paytm wallet login on a vercel.app subdomain harvesting phone number and password — brand impersonation plus credential phishing.

Risk Factors (5)
Brand impersonation of Paytm on a non-official domain
Login form harvesting phone number and password
Unranked hosting-platform subdomain with unknown creation date
Phishing threat-intel report against the primary domain
Abused-cloud-hosting IDS alerts (vercel.app)
Domain age information unavailable

Details

Page Title

Paytm Wallet

Scan Type

public

Domain Name Analysis

The domain 'paytm-wallet-user-app.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'paytm-wallet-user-app'. Its registrable label 'vercel' stretches across 6 characters with two vowels and 4 consonants. It segments into 2 words: ver, cel. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://paytm-wallet-user-app.vercel.app/

Page Load Overview

2.40s
Total Load Time
193 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:36%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:70 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as de

Website Classification

Primary Category

finance banking77% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
77%
cryptocurrency blockchain
43%
technology software
42%
e-commerce shopping
41%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
864.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
8216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
162--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T176026279AC05DE4BD86B6D19213E6E3A44CDCA3FCB61C8AC93EDCE0907918794F95C81

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TGv7sHAlZuuGLnvEJf+eE6aVk5kXqLeEpdTO00gg0Bc6ct8cwzj3hkyjT7cg1xqx:avoHAlZuuknvexFdTOU+gnqzcJmmG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8266:YG5KXggggSKEKDHgElBEAgg4BIREkkCiSDKCkLFYHIQgQxYKOBTUZ4rAgYNKsQ1AyikINAERkILElCQQRWJHSBVjwCE4jACZ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0219181800180000
Perceptual Hash:d9d9667651d8d811
Difference Hash:8a31b2b22a300800
Wavelet Hash:7efff8f82c3c0000
Color Hash:#2d8652

Other Hashes

Crop Resistant:8a31b2b22a300800

Scan History

Scan history not available

Unable to load historical scan data