Security Scan Report: fast-apricot-wqmnawhm-dp1av46jj0oc.edgeone.dev

Submitted: Sep 12, 2026, 6:01:34 PMCompleted: Sep 12, 2026, 6:01:56 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Mirrored Next.js/Vercel marketing-docs page on an anonymous edgeone.dev subdomain. No credential or payment form, no malware/YARA hit, no content IoC; only informational IDS and reputation-only IP tags. Brand mismatch caps this at moderate risk.

Risk Factors
Brand mismatch: Next.js/Vercel branding served from a non-Vercel edgeone.dev subdomain
Mirrored/cloned website content on an anonymous shared-hosting tenant subdomain of unknown creation date
Safety Factors
No credential, login, or payment form present (email newsletter subscribe only, action /home)
No JavaScript malware/YARA patterns and no native-YARA high-precision hits
No cross-origin credential forms or credential exfiltration detected
Kit-roster check found no known malicious kit
Content is technology documentation/software marketing consistent with the ML classifier (technology software, 72%)
Threat-intel hits are generic abuse-reputation tags, not content-malware indicators
No hidden password fields, no unicode confusion, no noindex cloaking
Domain age information unavailable

Details

Page Title

Next.js by Vercel - The React Framework

Scan Type

public

Domain Name Analysis

The domain 'fast-apricot-wqmnawhm-dp1av46jj0oc.edgeone.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain 'fast-apricot-wqmnawhm-dp1av46jj0oc'. Its registrable label 'edgeone' stretches across 7 characters with 4 vowels and three consonants. Splitting it apart reveals 2 words: edge, one. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fast-apricot-wqmnawhm-dp1av46jj0oc.edgeone.dev/

Page Load Overview

2.40s
Total Load Time
545 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:7,797 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
39%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1843.174.247.29Singapore
1743.174.246.29Singapore
352--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150C1ED039CED8E197862A4C1C912F34DE54EA133D4244D5EF22CB4AA2F48DDA239F57E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S/mW7WJWAWZW5GzcMp3RFRiXcVvr9nqOfmgVTDZqZJ5ORg2r:SOW7WJWAWZW5GzcMp3RFRiXcVvr9nqOp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5946:GIAwDoMjACKSCBIIAIsAwIAEIDCIAgASEoCHACoXRMkaiCACAADAAlQCBASBBEkCCAMIOeKwgXAAYZ4EVwNlBAggAEAUQYBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcc381efe7ffffcf
Perceptual Hash:b368ccc393cc683b
Difference Hash:41220b0c0a001496
Wavelet Hash:888081c3e7f7ff42
Color Hash:#c387c5

Other Hashes

Crop Resistant:41220b0c0a001496

Scan History

Scan history not available

Unable to load historical scan data