Security Scan Report: doc-ythvvbc.vercel.app

Submitted: Oct 4, 2026, 6:50:25 PMCompleted: Oct 4, 2026, 6:51:04 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 70%

7
Risk Score

Unbranded email/password login on an unranked vercel.app subdomain with hidden pdf1/address fields and a single-source phishing report on the domain; no brand claim, no exfiltration detected. Treat as credential phishing and avoid entering any credentials.

Risk Factors (5)
Credential-collecting login form on an instant-publish subdomain with unknown creation date
Single-source phishing threat-intel match on the primary domain
Orphan/disguised-form artifacts (hidden pdf1/address fields) suggesting a reused phishing template
Domain absent from Cisco Umbrella rankings and hosted on shared infrastructure
Page title empty and page text limited to a bare login prompt with no company identity, contact, or policy pages
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'doc-ythvvbc.vercel.app' is registered and includes subdomain 'doc-ythvvbc'. The registrable portion 'vercel' spans 6 characters with two vowels and four consonants. Splitting it apart reveals 2 words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://doc-ythvvbc.vercel.app/

Page Load Overview

2.53s
Total Load Time
371 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:53%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:已下架
Text Length:219 chars
Detector Agreement:100%
Language mismatch: Declared as 已下架 but detected as en

Website Classification

Primary Category

adult content29% confidence
Type: webapp
Method: ml+structural

All Detected Categories

adult content
29%
news media journalism
29%
finance banking
27%
government public service
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1142.251.110.95Google · CDNUnited States
AS15169Google LLC
1151.101.1.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1104.18.40.68Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.152.119Google · CDNUnited States
AS15169Google LLC
152.72.208.91Aws · CLOUDAshburn, Virginia, United States
AS14618Amazon.com, Inc.
1104.21.26.223Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1514--

Detected Technologies10

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BD4484B0E20C20DA7336C44FBF81B6A962B5F369D5514DA6F21F2C5C4EC268611E2F39

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:LIlMIpu80PxXE4YXJgndFTfy9lQOw/71gIuiHlqqm68lDbNBmbfNyHT2Ic7c1+Y0:Ji8Px04YXGdFTyHQ/Z6woHzt09Kk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:260810:ExSy4sDIWcgNCCICBYUGRIlGgIRDGKAFgCFCEJFgA3JFGADwIUKRv6AB4BJANuAdGVTekIQSAkYoJtUBAaoUCzDEBA4gDYob

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018181818000000
Perceptual Hash:88cc3333337733cc
Difference Hash:4db3b3b3b34d3101
Wavelet Hash:2f1b1b1b1b070f0f
Color Hash:#7997d2

Scan History

Scan history not available

Unable to load historical scan data