Security Scan Report: server-dch23456789045678.vercel.app

Site favicon
Submitted: Sep 27, 2026, 3:50:39 AMCompleted: Sep 27, 2026, 3:53:46 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Fake login portal on a throwaway vercel.app subdomain that POSTs captured credentials to a suspicious external .ru endpoint — classic credential phishing.

Risk Factors (4)
Credential form (username + password) on a free shared-hosting subdomain
Cross-origin POST of form data to crm.luk-buk.ru (third-party, unrelated to the page domain)
Hidden phishing-kit-style fields ('burns', 'bot')
Unranked domain with no legitimate reputation backing a login portal
Domain age information unavailable

Details

Page Title

Email Login Portal

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'server-dch23456789045678.vercel.app' is registered with subdomain 'server-dch23456789045678'. The core label 'vercel' covers 6 characters containing two vowels alongside four consonants. Breaking it apart gives 2 words: ver, cel. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://server-dch23456789045678.vercel.app/

Page Load Overview

75.21s
Total Load Time
150 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:65%
Script:Latin
Direction:ltr

Detection Details

Text Length:200 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism37% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

news media journalism
37%
government public service
33%
adult content
31%
technology software
30%
documentation technical
30%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
140216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
140142.251.14.95Google · CDNUnited States
AS15169Google LLC
140151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
140142.251.13.95Google · CDNUnited States
AS15169Google LLC
140172.64.147.188Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
140104.16.78.6Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
14064.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
140151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
140104.18.40.68Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
140104.16.79.6Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
140010--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B7D3E8A0F11031EA3333C55A72D0EE873659A153E5664EB7F22F25D88F846CA1673F1A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:HQsgy3Gxw/Vc/QWlJxtQOIuiHlq5mzI4X8OAduFKbv2ctg2Bd8JP7ecQLvH1FLRF:HQsqw/a1fIuiHlq5mN8lDbNmPbI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:132184:A4tJGCqUQHBC1yLA0IihCkgTbUSYDQKFDJUhYAAlJgkFHwdNAbDgSmUQUrDCQFepCBS0IiQAQgYWERBICIWwBOpEAKARQhCJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7ffffffff
Perceptual Hash:b333cccc993323cc
Difference Hash:0c0c0c4c00080000
Wavelet Hash:27272727e0f0c0c0
Color Hash:#bf9940

Other Hashes

Crop Resistant:0c0c0c4c00080000

Scan History

Scan history not available

Unable to load historical scan data