Security Scan Report: www.rom2-nine.vercel.app

Redirected to:
https://rom2-nine.vercel.app/
Site favicon
Submitted: Aug 1, 2026, 12:45:02 AMCompleted: Aug 1, 2026, 12:46:23 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 4 domains to perform 2 HTTP transactions. The main domain is rom2-nine.vercel.app and was registered NaN years ago.

Submitted URL: https://www.rom2-nine.vercel.app/

Effective URL: https://rom2-nine.vercel.app/Redirected

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

The site harvests Zimbra credentials on an untrusted Vercel subdomain; treat as high‑risk phishing.

Risk Factors
Credential collection on unknown‑age subdomain
Impersonation of Zimbra brand
Unranked / low‑reputation domain
Domain age information unavailable

Details

Page Title

Zimbra Web Client Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(61%)

Domain Information

Domain 'www.rom2-nine.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'www.rom2-nine'. The second-level label 'vercel' is 6 characters long holding 2 vowels versus 4 consonants. It segments into two words: ver, cel. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.rom2-nine.vercel.app/

Page Load Overview

2.23s
Total Load Time
6
HTTP Requests
4
Domains
263 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:196 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software61% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
61%
corporate business
57%
e-commerce shopping
52%
government public service
43%
healthcare medical
40%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3216.198.79.195United States
AS16509Amazon.com, Inc.
1141.148.83.134Oracle · CLOUDAshburn, Virginia, United States
AS31898Oracle Corporation
164.29.17.195United States
AS16509Amazon.com, Inc.
1129.213.176.209Oracle · CLOUDAshburn, Virginia, United States
AS31898Oracle Corporation
64--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12432D9128DE21D5457419095A5ED6EC52E2DD38B884088CCBABD9FC4CFF6E99C8D336C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:bsuvZXmzLKdoEZO26lJZgZ5kVRVusCW7BZtgbuS6b1lKtXl29zl9/Z:dXmzLWoEZO2k25KRVusCWBHhZ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11950:BJCSmZGYJRfKSCSoQKAhugmgBUgOAAloAICUQiTHAExEhkKAKkJQoEgkGhDTQIghBjaTCVsJkAgkIQMnIw9qlLEiVCHBI1QQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:99de26f89926d921
Difference Hash:504cb2b2b232cef3
Wavelet Hash:f07cfeff1f980000
Color Hash:#79d292

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data