Security Scan Report: paypal-secure.vercel.app

Submitted: Aug 4, 2026, 6:50:07 AMCompleted: Aug 4, 2026, 6:51:35 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is paypal-secure.vercel.app and was registered NaN years ago.

Submitted URL: https://paypal-secure.vercel.app/

AI Security Verdict

Confirmed Scam

Confidence: 92%

10
Risk Score

Page impersonates PayPal, shows a login form and triggers Safe Browsing social‑engineering alert – confirmed credential phishing.

Risk Factors
Brand impersonation (PayPal) on mismatched domain
Social Engineering Safe Browsing alert
Credential collection form (email field) on phishing‑styled page
Unknown subdomain age on a public hosting platform
Domain age information unavailable

Details

Page Title

Sign in to PayPal

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(50%)

Domain Information

The domain 'paypal-secure.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'paypal-secure'. The second-level label 'vercel' is 6 characters long containing two vowels alongside 4 consonants. Segmentation suggests 2 words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://paypal-secure.vercel.app/

Page Load Overview

7.71s
Total Load Time
8
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:142 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking50% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
50%
e-commerce shopping
48%
technology software
47%
social media network
35%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8216.198.79.67United States
AS16509Amazon.com, Inc.
81--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T191926584B41C127C5D3BAB15EEC8A32CC125FD43EE624436A10D048EEAD6FF539A6F95

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:XkOx05nrGPKJgg8T4xksc64Jysq7vWGeVV0RXe3wQ:10rGV4xksc64Jysq7vkVV0RXe3j

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20387:ElgIESsLoIAGwyCCkAcAE0ixgiwmWOoAUQWlinYIiAAqTQQVYgFsCEgGUhApRAGRrBIMQCBV1KSxgGJWFlCRDYZRMGEJBCaE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7ff41000000
Perceptual Hash:b3b3999c8c666626
Difference Hash:2a5a4d0841111111
Wavelet Hash:ffffe7ff09000000
Color Hash:#d2a379

Other Hashes

Crop Resistant:2a5a4d0841111111

Scan History

Scan history not available

Unable to load historical scan data