Security Scan Report: wuhfueovibnavphmhjt.vercel.app

Redirected to:
https://gmrn45m-h20m.vercel.app/10003462346989/qsMJa1dvgLlRjLqIBW.html
Submitted: Sep 21, 2026, 12:45:16 PMCompleted: Sep 21, 2026, 12:45:58 PMpubliccompleted

This website contacted 6 IPs in 1 country across 5 domains to perform 21 HTTP transactions. The main domain is gmrn45m-h20m.vercel.app and was registered 10 years ago.

Submitted URL: https://wuhfueovibnavphmhjt.vercel.app/sdfn45wstnrefyje5hrtbw

Effective URL:

https://gmrn45m-h20m.vercel.app/10003462346989/qsMJa1dvgLlRjLqIBW.html
Redirected

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Credential-harvesting form with hidden password field on random Vercel subdomain; no brand identity, unknown age, and IDS abuse flags make this high-risk phishing infrastructure.

Risk Factors (5)
Credential capture form with password and email fields on an unknown-age hosting subdomain
Hidden password field in HTML not visible on the rendered page
Random/obfuscated subdomains and redirect path consistent with disposable phishing infrastructure
IDS alerts for actor-abused cloud hosting service domain (vercel.app)
Scanner-vs-client content mismatch: scanner saw a different title than residential client
Domain age information unavailable

Details

Page Title

Home

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'wuhfueovibnavphmhjt.vercel.app' is registered; it also runs on subdomain 'wuhfueovibnavphmhjt'. The second-level label 'vercel' is 6 characters long holding 2 vowels versus 4 consonants. It segments into 2 words: ver, cel. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://wuhfueovibnavphmhjt.vercel.app/sdfn45wstnrefyje5hrtbw

Page Load Overview

0.70s
Total Load Time
548 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:12 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
364.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
3151.101.193.229Fastly · CDNUnited States
AS54113Fastly, Inc.
3172.67.69.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.67.180.104Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
216--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T115A1377329E221005DEC96F568DC3B0C735EC45F0982DD67D28E283CB72FADAB499554

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TBI+awslWFmpr/1p6F09k/N9oWUuxRk1BtG8jQ7NBp+44:TBxslWFyRk3dU2R+BtYTc44

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4866:4KwBABgEApJBtgKEkCGAgEBCQIIARoECEAGAAgFSCQEQIIoSAqFAAgsWCAACDCSIlEAQgJokFAAJAwAACAAlo2SFjAFDAoGA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffcfcfffffff
Perceptual Hash:b9c6c63139cec631
Difference Hash:0000001010000000
Wavelet Hash:f0f0f0c0c0f0f0f0
Color Hash:#9940bf

Other Hashes

Crop Resistant:0000001010000000

Scan History

Scan history not available

Unable to load historical scan data