Security Scan Report: feminist-brown-plkm1dgi.edgeone.dev

Site favicon
Submitted: Sep 18, 2026, 12:45:34 AMCompleted: Sep 18, 2026, 12:47:01 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

DocuSign-branded phishing page on a free edgeone.dev subdomain with five email/password forms harvesting credentials under a fake 'view your document' pretext. Do not enter credentials.

Risk Factors (5)
DocuSign favicon and branding on a domain DocuSign does not own
Five credential-harvesting login forms (email + password)
Deceptive 'secure document sign-in' pretext with fake email-provider selection
Free instant-subdomain hosting platform with unknown page age
Unranked domain impersonating a top-10K brand
Domain age information unavailable

Details

Page Title

Docusign | #1 in Electronic Signature and Intelligent Agreement Managemen

Scan Type

public

Domain Name Analysis

Within the developer-focused generic top-level domain (.dev), 'feminist-brown-plkm1dgi.edgeone.dev' is registered; it also runs on subdomain 'feminist-brown-plkm1dgi'. Its registrable label 'edgeone' stretches across 7 characters containing four vowels alongside 3 consonants. Splitting it apart reveals 2 words: edge, one. Median word length comes out to 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://feminist-brown-plkm1dgi.edgeone.dev/

Page Load Overview

15.65s
Total Load Time
733 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:815 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software68% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
68%
documentation technical
66%
phishing scam
31%
government public service
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
243.174.247.29Singapore
1172.67.68.11Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1184.24.77.57Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1104.18.40.18Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1192.178.183.138Google · CDNUnited States
AS15169Google LLC
1104.26.6.244Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.26.3.143Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.26.2.143Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
12.18.79.116Akamai · CDNVienna, Vienna, Austria
AS20940Akamai International B.V.
1413--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T142D559E224C9C4BEBF6224FBA9821ED55571CD9ED9F8D790204B00EFD6D41EA2214DCE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:Z8UyjzOI9BDNpt7Jw88U4Dc4AVjqerJea0P7PJ8knw0JanVQepATjA+tqGbeiCNk:H

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2783383:ABhTR7AhBoDvmbaEwAAJoyICGCAiDCqFrIA8AA4FDsQJAvEEQm00iEMMAKMYhUyA0pTAybAcYggwYA5A44BS3jNMDYEBEkJF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7f7fe7e7e1e7ff29
Perceptual Hash:a78c996663997263
Difference Hash:c4cc8f4e4d4cda4b
Wavelet Hash:7f3f032320e7ef00
Color Hash:#2d5ed2

Scan History

Scan history not available

Unable to load historical scan data