Security Scan Report: osiiironahur.vercel.app

Redirected to:
https://osiiironahur.vercel.app/index.html?lang=de
Submitted: Sep 24, 2026, 12:45:07 AMCompleted: Sep 24, 2026, 12:45:45 AMpubliccompleted

This website contacted 9 IPs in 3 countries across 6 domains to perform 22 HTTP transactions. The main domain is osiiironahur.vercel.app and was registered 13 years ago.

Submitted URL: https://osiiironahur.vercel.app/

Effective URL:

https://osiiironahur.vercel.app/index.html?lang=de
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Fake Facebook credential-phishing page on a vercel.app subdomain, harvesting passwords and 2FA codes via a fake password-change flow. Do not enter any credentials.

Risk Factors (5)
Impersonation of Facebook brand on an unrelated, unranked domain
Fake Facebook password-change / 2FA verification credential-harvesting form (3 password fields)
Fear-based social engineering luring users with a fake unauthorized-login alert
Hosted on free shared hosting subdomain with unknown age (vercel.app)
Suricata HIGH alert: external IP lookup domain (ipwho.is)
Domain age information unavailable

Details

Page Title

Facebook

Scan Type

public

Domain Name Analysis

Domain 'osiiironahur.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'osiiironahur'. The core label 'vercel' covers 6 characters containing 2 vowels alongside four consonants. Breaking it apart gives 2 words: ver, cel. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://osiiironahur.vercel.app/

Page Load Overview

3.70s
Total Load Time
39 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,735 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as de

Website Classification

Primary Category

social media network99% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
99%
technology software
83%
blog personal website
77%
education learning
72%
news media journalism
71%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2172.66.175.107Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
264.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2188.68.242.180Olsztyn, Warmia-Masuria, Poland
AS197226sprint S.A.
2167.233.217.29Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
2104.26.9.44Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
234.117.59.81Google · CDNKansas City, Missouri, United States
AS396982Google LLC
2104.20.44.133Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
229--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B4F22B65B0A5163EE6FB0AE830A717887438810AFC864045BDBF5F68D596CC77933B9C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:BgDb33Wsuawznevtzczu8kKunWQ+umuP0mSbqqYRpYDsT1vCbvs6vJEBLwaVYGnC:3iv+TFaVt5zon

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:34286:oCaGEtQC/AIJSJUACUAAgCc+IoiQSYy8WEhQhCAXFKQmEBmzhcTugcIBDKMEkQIUuiAOEgSRg0BFTKcADPiFEJEuAdKBEVnd

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00fffff7ffffffff
Perceptual Hash:e47a1b5c6c643333
Difference Hash:32d8486626080000
Wavelet Hash:002cccf0033f3f3f
Color Hash:#1f6793

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data