Security Scan Report: www.raiffeisen-gilt.vercel.app

Redirected to:
https://raiffeisen-gilt.vercel.app/
Site favicon
Submitted: Sep 16, 2026, 12:45:06 AMCompleted: Sep 16, 2026, 12:45:31 AMpubliccompleted

This website contacted 5 IPs in 2 countries across 6 domains to perform 11 HTTP transactions. The main domain is raiffeisen-gilt.vercel.app and was registered 29 years ago.

Submitted URL: http://www.raiffeisen-gilt.vercel.app/

Effective URL:

https://raiffeisen-gilt.vercel.app/
Redirected

AI Security Verdict

High Risk

Confidence: 76%

8
Risk Score

Raiffeisen-named vercel.app subdomain that actually serves a clone of Google's search page with Google's favicon — brand impersonation/redirect gate flagged as phishing; no credential form, but do not interact.

Risk Factors (6)
Google favicon and Google-branded page served from a non-Google domain
Full Google search page clone on a vercel.app subdomain (classic phishing-host pattern)
Threat-intel phishing report on the primary domain (single-source, unverified)
Hostname misleadingly references Raiffeisen (bank) while content is Google
Cloudflare access-denied/redirect interstitial inconsistent with the rendered page (cloaking)
IDS alerts for commonly actor-abused cloud hosting service (vercel.app)
Domain age information unavailable

Details

Page Title

Verification

Scan Type

public

Domain Name Analysis

Domain 'www.raiffeisen-gilt.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'www.raiffeisen-gilt'. The core label 'vercel' covers 6 characters split between two vowels and four consonants. Segmentation suggests 2 words: ver, cel. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.raiffeisen-gilt.vercel.app/

Page Load Overview

1.05s
Total Load Time
195 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:de
Text Length:3,592 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content56% confidence
Type: spa
Method: ml+structural

All Detected Categories

adult content
56%
education learning
41%
documentation technical
39%
social media network
36%
news media journalism
36%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3216.198.79.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
264.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2142.251.14.95Google · CDNUnited States
AS15169Google LLC
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2184.24.77.83Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
115--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16222224B36F700216AA351BE1BB717193A3040075A4ECE683E9D43904F9AF95DB73AEC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:z7SywU0dGXhTJjTl+3LpoSZ1yPeFVG+6MoZlaFswTwybhm70:z1TgmkG+6Mrsfy/

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:10432:m0mUw0IES0IEQyDFHSgJAAyAlEAxERMSE3hBzAQLQRJrbiWIBC5AJAyDlDzEVOEAgIKgSQaD7JQRCKaEAIIEiIbAiBNQEghA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000060203000007e
Perceptual Hash:c1639c3e8e32c9e3
Difference Hash:0000d04040000070
Wavelet Hash:f0f0f0d0f0f0c0fe
Color Hash:#40bf75

Other Hashes

Crop Resistant:0000d04040000070

Scan History

Scan history not available

Unable to load historical scan data