Security Scan Report: pertamina-pemesanan-ia.vercel.app

Site favicon
Submitted: Oct 1, 2026, 6:51:43 AMCompleted: Oct 1, 2026, 6:52:20 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Fake DANA/Pertamina 'customer care' page on a vercel.app subdomain that impersonates the DANA payment brand and posts user data to an unrelated external domain (demcloud.my.id). Do not enter any payment or order codes.

Risk Factors (4)
Brand impersonation of DANA payment service on a non-official domain
Cross-origin POST submission of user data to suspicious unranked domain demcloud.my.id
Free shared-hosting subdomain (vercel.app) with no attributable age for the page
Payment/order-code collection ('Kode COD Pembayaran') under a payment brand's identity
Domain age information unavailable

Details

Page Title

๐——๐—”๐—ก๐—” | ๐—–๐˜‚๐˜€๐˜๐—ผ๐—บ๐—ฒ๐—ฟ ๐—–๐—ฎ๐—ฟ๐—ฒ ๐——๐—”๐—ก๐—”

Scan Type

public

Domain Name Analysis

The domain name 'pertamina-pemesanan-ia.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'pertamina-pemesanan-ia'. Count 6 characters in 'vercel' containing two vowels alongside 4 consonants. It segments into two words: ver, cel. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pertamina-pemesanan-ia.vercel.app/

Page Load Overview

2.37s
Total Load Time
2.0 MB
Total Size

Language Analysis

Primary Language

๐Ÿ‡ฎ๐Ÿ‡ฉIndonesian
Code: id
Confidence:37%
Script:Unknown
Direction:ltr

Detection Details

Text Length:222 chars
Detector Agreement:60%

Website Classification

Primary Category

finance banking81% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
81%
e-commerce shopping
50%
government public service
45%
news media journalism
36%
adult content
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
16216.198.79.67Aws ยท CLOUDUnited States
AS16509Amazon.com, Inc.
1104.18.11.207Cloudflare ยท WAFUnited States
AS13335Cloudflare, Inc.
1104.17.207.5Cloudflare ยท WAFUnited States
AS13335Cloudflare, Inc.
1104.17.25.14Cloudflare ยท WAFUnited States
AS13335Cloudflare, Inc.
1142.251.13.95Google ยท CDNUnited States
AS15169Google LLC
1185.199.110.153Fastly ยท CDNUnited States
AS54113Fastly, Inc.
1142.251.13.132Google ยท CDNUnited States
AS15169Google LLC
1103.150.93.32Bogor, West Java, Indonesia
AS133800PT Biznet Gio Nusantara
1188.114.97.9Cloudflare ยท WAFUnited States
AS13335Cloudflare, Inc.
1104.26.14.37Cloudflare ยท WAFUnited States
AS13335Cloudflare, Inc.
3419--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10AF2D8A1549214073213C5C877A65F8A325A90038A07CC6877FD365EEF8EBBC99B739C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:WG2/5AnEDAFVFmFoFlqcB3vFTI5kPbg2TtarXTfdAs6s6s6w++:GoE874OLn3vHXXXk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:35333:IqrjAtQQkrQjYMIiJIQiAgKCmgABAGJNjjSCQETOkvRAwHMYKFrFoMiKaGXK5oRjqKwRRNURPARUgwSgBSQ5RcCAYWiABAY0

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00e7e7e7e7ffe7e7
Perceptual Hash:e64c774c33591966
Difference Hash:4d0c0c0c0c004d4d
Wavelet Hash:0067c7c7273f0707
Color Hash:#6ce0b9

Scan History

Scan history not available

Unable to load historical scan data