Security Scan Report: www.owacat.vercel.app

Redirected to:
https://owacat.vercel.app/
Submitted: Sep 26, 2026, 12:45:50 PMCompleted: Sep 26, 2026, 12:46:52 PMpubliccompleted

This website contacted 5 IPs in 1 country across 3 domains to perform 5 HTTP transactions. The main domain is owacat.vercel.app and was registered 18 years ago.

Submitted URL: http://www.owacat.vercel.app/

Effective URL:

https://owacat.vercel.app/
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Phishing page impersonating Generalitat de Catalunya's sign-in on owacat.vercel.app, harvesting email/password and exfiltrating credentials to submit-form.com. Safe Browsing and IDS confirm; do not enter credentials.

Risk Factors (5)
Brand impersonation of a government entity (Generalitat de Catalunya) on an unrelated domain
Cross-origin submission of password + email to submit-form.com
Google Safe Browsing Social Engineering threat
HIGH-severity IDS alert for form exfiltration to submit-form.com
Harvested credentials cannot be recovered or revoked by the legitimate brand
Domain age information unavailable

Details

Page Title

Generalitat de Catalunya - Sign in

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'www.owacat.vercel.app' is registered and includes subdomain 'www.owacat'. Its registrable label 'vercel' stretches across 6 characters holding 2 vowels versus four consonants. Breaking it apart gives 2 words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.owacat.vercel.app/

Page Load Overview

3.53s
Total Load Time
9 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:286 chars
Detector Agreement:67%

Website Classification

Primary Category

corporate business62% confidence
Type: webapp
Method: ml+structural

All Detected Categories

corporate business
62%
government public service
62%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
164.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1142.251.14.113Google · CDNUnited States
AS15169Google LLC
164.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1142.251.14.100Google · CDNUnited States
AS15169Google LLC
55--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10661125696E7084AB803A4743FFB96223125C463850EDE383F6D675CDF8AAC1892379C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:ThKWtqOG+EWLOGzFOGkuCZOGpOGAkuOGIOGKOGwxOG++vYVX8nlHIG7JPR4HJsR+:ThKWnHyj5NXvRnlLPRoq+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3195:RU5BQBEAgCACAABABsAAIAACAACAAAEFsAQAKhQQgAKoAgCAQCAkRACAAABAoAAQASMAIEgBAIqcAqAiAQBABACAgACAAQAU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:99dc267789d98866
Difference Hash:0c32b2b2b2b2320d
Wavelet Hash:0c043c3c3c3c2021
Color Hash:#c59b87

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data