Security Scan Report: doc-ythvvbc.vercel.app

Submitted: Sep 20, 2026, 4:51:17 PMCompleted: Sep 20, 2026, 4:51:37 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Fake login gate on a randomized vercel.app subdomain: Google Safe Browsing and threat intel both flag phishing, and the page captures email/password via a disguised document lure. Do not enter credentials.

Risk Factors
Google Safe Browsing Social Engineering (phishing) hit on the exact URL
Threat-intelligence phishing report naming the primary domain
Credential capture form (password + email fields) on a free-hosting subdomain
Obfuscated form handling: javascript:void(0) action with hidden pdf1/address/email/type fields
Randomized, non-descriptive subdomain lacking any legitimate identity or branding
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

You're looking at domain 'doc-ythvvbc.vercel.app' on the application-focused generic top-level domain (.app); it also runs on subdomain 'doc-ythvvbc'. The second-level label 'vercel' is 6 characters long holding two vowels versus four consonants. Word splitting yields 2 words: ver, cel. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://doc-ythvvbc.vercel.app/

Page Load Overview

0.70s
Total Load Time
292 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:53%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:已下架
Text Length:219 chars
Detector Agreement:100%
Language mismatch: Declared as 已下架 but detected as en

Website Classification

Primary Category

adult content29% confidence
Type: webapp
Method: ml+structural

All Detected Categories

adult content
29%
news media journalism
29%
finance banking
28%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1364.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
0142.251.110.95Google · CDNUnited States
AS15169Google LLC
0151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
0192.178.170.95Google · CDNUnited States
AS15169Google LLC
0172.64.147.188Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0104.18.10.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0142.251.127.95Google · CDNUnited States
AS15169Google LLC
0151.101.65.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1316--

Detected Technologies10

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EEE07DA3D8748C2F1620CA622DE2F11F8636BA28B7504D49D8EE45E96C56B4684A380C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:q9hqrApgYON3DCGMw0AbjGgLq4felHT8NWQAlKPUQyrNVuB9d:PApYD75e4fcz8NWQCUURNVG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:06a47204ed0826b51307d145e0615a13

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018181818000000
Perceptual Hash:88cc3333337733cc
Difference Hash:4db3b3b3b34d3101
Wavelet Hash:2f1b1b1b1b070f0f
Color Hash:#1f8293

Scan History

Scan history not available

Unable to load historical scan data