Security Scan Report: binding-salmon-gisqkmkq-dp02pxdstb5z.edgeone.dev

Submitted: Sep 18, 2026, 3:11:15 PMCompleted: Sep 18, 2026, 3:11:37 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Mirrored copy of the official Next.js by Vercel site served on an unrelated .edgeone.dev subdomain, impersonating the Vercel brand; IDS flagged a mirrored-website phish pattern. No credential form confirmed, but do not interact.

Risk Factors
Impersonation of the Vercel/Next.js brand on a mismatched, non-official domain
Mirrored copy of a legitimate vendor website detected by network IDS (ET PHISHING signature)
Randomized subdomain on a free shared-hosting platform with unknown page creation age
Unranked domain (not in Cisco Umbrella top 1M)
Domain age information unavailable

Details

Page Title

Next.js by Vercel - The React Framework

Scan Type

public

Domain Name Analysis

The domain 'binding-salmon-gisqkmkq-dp02pxdstb5z.edgeone.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'binding-salmon-gisqkmkq-dp02pxdstb5z'. Its registrable label 'edgeone' stretches across 7 characters with four vowels and three consonants. Tokenizing the label suggests two words: edge, one. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://binding-salmon-gisqkmkq-dp02pxdstb5z.edgeone.dev/

Page Load Overview

4.01s
Total Load Time
532 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:7,797 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
39%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1843.174.247.29Singapore
1743.174.246.29Singapore
352--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150C1ED039CED8E197862A4C1C912F34DE54EA133D4244D5EF22CB4AA2F48DDA239F57E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S/mW7WJWAWZW5GzcMp3RFRiXcVvr9nqOfmgVTDZqZJ5ORg2r:SOW7WJWAWZW5GzcMp3RFRiXcVvr9nqOp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5946:GIAwDoMjACKSCBIIAIsAwIAEIDCIAgASEoCHACoXRMkaiCACAADAAlQCBASBBEkCCAMIOeKwgXAAYZ4EVwNlBAggAEAUQYBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcc381efe7ffffcf
Perceptual Hash:b368ccc393cc683b
Difference Hash:41220b0c0a001496
Wavelet Hash:888081c3e7f7ff42
Color Hash:#61d22d

Other Hashes

Crop Resistant:41220b0c0a001496

Scan History

Scan history not available

Unable to load historical scan data