Security Scan Report: fillingconfirmation.vercel.app

Redirected to:
https://fillingconfirmation.vercel.app/secure.html
Submitted: Sep 18, 2026, 11:47:28 PMCompleted: Sep 18, 2026, 11:47:48 PMpubliccompleted

This website contacted 5 IPs in 1 country across 2 domains to perform 10 HTTP transactions. The main domain is fillingconfirmation.vercel.app and was registered 17 years ago.

Submitted URL: https://fillingconfirmation.vercel.app

Effective URL:

https://fillingconfirmation.vercel.app/secure.html
Redirected

AI Security Verdict

Moderate Risk

Confidence: 55%

5
Risk Score

Deceptive '2025 T4 Form downloaded, access code 6060' confirmation page on an unknown-age vercel.app subdomain. No forms, credentials or malware found; reputation match is unverified.

Risk Factors (4)
Deceptive content: claims a tax form was downloaded and issues an 'access code' with no actual download or service behind it
Vercel.app subdomain with unknown creation date and no reputation
Single-source threat-intel reputation match (unverified) on the primary domain
IDS alerts citing vercel.app as commonly abused cloud hosting
Safety Factors (4)
No forms of any kind (0 password, 0 disguised-password, 0 payment, 0 total)
No JavaScript YARA malware patterns detected
No known malicious kit in the kit roster
No cross-origin credential exfiltration or outbound abuse signals from the page itself
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

You're looking at domain 'fillingconfirmation.vercel.app' on the application-focused generic top-level domain (.app); it also runs on subdomain 'fillingconfirmation'. Its registrable label 'vercel' stretches across 6 characters containing 2 vowels alongside four consonants. Breaking it apart gives 2 words: ver, cel. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fillingconfirmation.vercel.app

Page Load Overview

0.41s
Total Load Time
71 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:63%
Script:Latin
Direction:ltr

Detection Details

Text Length:74 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical67% confidence
Type: static
Method: ml+structural

All Detected Categories

healthcare medical
67%
documentation technical
66%
finance banking
60%
real estate property
56%
government public service
54%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
264.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
264.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
105--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10521AA4BAF0C1027F21961807DA437E6580E8C37AB4B4DF7BCD2947CDED465C82567A8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hayDuDfn0rn9KNbSAdoKNhsmK4gIYIOLW55w6GXZ21E+k+U4A/ZIqiKSMRxUl:JCtV1HcHIuWHzuAE+iSMnC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1374:AACgAAKAIBAAAAgAABAAMAQAAgBAAAAIIAAEAAAAQIAAAAKgACAAEAAAAgAIAQAAAIAAAAQgBAAAQAEEAEEgAQAQAAAAAECI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7ffffffffff
Perceptual Hash:b3338ccccccc3333
Difference Hash:0008080000000000
Wavelet Hash:fce4e4fc00000000
Color Hash:#36931f

Other Hashes

Crop Resistant:0008080000000000

Scan History

Scan history not available

Unable to load historical scan data