Security Scan Report: pr00nmrllca-fi.vercel.app

Redirected to:
https://rapiescapes.com/benfiprom-fi-cr/
Submitted: Sep 26, 2026, 9:50:24 PMCompleted: Sep 26, 2026, 9:51:58 PMpubliccompleted

This website contacted 3 IPs in 1 country across 3 domains to perform 6 HTTP transactions. The main domain is rapiescapes.com and was registered 10 years ago.

Submitted URL: https://pr00nmrllca-fi.vercel.app

Effective URL:

https://rapiescapes.com/benfiprom-fi-cr/
Redirected

AI Security Verdict

Moderate Risk

Confidence: 45%

5
Risk Score

Unreachable 502 error page on a free vercel.app subdomain that redirects to an unrelated unranked domain. No forms, no Indicators of Compromise, no malware — the malicious ML label and abused-hosting flags keep it at MODERATE only.

Risk Factors (5)
ML classifier reports a phishing-scam label at 54% confidence
Cross-domain hop from a free vercel.app subdomain to an unrelated domain with a kit-like path
Hosting platform subdomain with unknown creation date (could be brand new)
Unranked domains with no reputation history
IDS alerts for a commonly abused cloud hosting service
Safety Factors (6)
No forms detected: 0 password fields, 0 disguised-password fields, 0 payment fields, 0 total forms
No Indicators of Compromise matches against the page or its resources
No JavaScript malware / YARA patterns detected
No credential exfiltration or cross-origin credential handling observed
Page currently unreachable — only an error page is served, so no harvesting behavior is present
No brand impersonation detected; no self- or third-party branding
Domain age information unavailable

Details

Page Title

502 Bad Gateway

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'pr00nmrllca-fi.vercel.app' is registered, featuring subdomain 'pr00nmrllca-fi'. The second-level label 'vercel' is 6 characters long with 2 vowels and 4 consonants. It segments into two words: ver, cel. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pr00nmrllca-fi.vercel.app

Page Load Overview

1.93s
Total Load Time
2 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:71%
Script:Latin
Direction:ltr

Detection Details

Text Length:68 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing scam54% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

phishing scam
54%
adult content
42%
real estate property
38%
news media journalism
30%
cryptocurrency blockchain
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.26.8.44Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
264.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
63--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1AEC02B3F51E11424B0F7B1AC0CC337403DC8814E439E4C02314895198E04EDDC48F3C1

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3:qVZxAvNXFnEznmS13J5AEtvxL//4tznmS1pH/P+gXb4iIPXsoO4SYLQz:qzxAY1AEdxsLzuSciMsoOfIQz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:21b82e023b6fac3d47b532729d398bf0

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870707070f0f1f3f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#ac53a3

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data