Security Scan Report: ejtgs7hmgzc00c87y3r.vercel.app

Redirected to:
https://gqrw19a-h07a.vercel.app/10004567348379/fbs5wsertnbstfdg4scxqIB...
Submitted: Sep 13, 2026, 12:45:18 AMCompleted: Sep 13, 2026, 12:46:27 AMpubliccompleted

This website contacted 3 IPs in 1 country across 3 domains to perform 3 HTTP transactions. The main domain is gqrw19a-h07a.vercel.app and was registered 14 years ago.

Submitted URL: https://ejtgs7hmgzc00c87y3r.vercel.app/nsvw35re4hbarefsdbvzxcv

Effective URL:

https://gqrw19a-h07a.vercel.app/10004567348379/fbs5wsertnbstfdg4scxqIB...
Redirected

AI Security Verdict

High Risk

Confidence: 65%

7
Risk Score

Anonymous vercel.app page chaining redirects between random subdomains and exposing a hidden password field plus multiple credential inputs — a credential-capture pattern. No brand identified and no other threat-intel hits.

Risk Factors (4)
Hidden password field in the DOM that is not visible to the user
Credential-capture form served from an anonymous free-hosting subdomain with no brand or business identity
Multi-hop redirect between two randomly-named subdomains of the same free-hosting platform
No ranking or reputation for the domain; page-level creation date unknown
Domain age information unavailable

Details

Page Title

Home

Scan Type

public

Domain Name Analysis

Domain 'ejtgs7hmgzc00c87y3r.vercel.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'ejtgs7hmgzc00c87y3r'. Its registrable label 'vercel' stretches across 6 characters with 2 vowels and four consonants. Splitting it apart reveals 2 words: ver, cel. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ejtgs7hmgzc00c87y3r.vercel.app/nsvw35re4hbarefsdbvzxcv

Page Load Overview

0.38s
Total Load Time
4 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:12 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
164.29.17.3United States
AS16509Amazon.com, Inc.
164.29.17.195United States
AS16509Amazon.com, Inc.
1216.198.79.195United States
AS16509Amazon.com, Inc.
33--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T101B13B73B9C01C34EBC5899488E8370CFA1D895A7D411EFBF75A10296B476E2E17C399

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TBxslWLksDlS405gaSnDJphlQTOIaGQvAPveQL2uadk67v0dSIrCdPZ5ACJFC9aB:VxslWLksDlS405gaSnDJphlQTOIaGQ42

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5518:EQEByAEQQXAQWkABgAYQAAAAQAASQAgABguoIqFKCQMCakBkMCWYEQAAIRiqIEgAgCiRA1sDASICApIAIIBoILQA1gAMBAEE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffcfcfffffff
Perceptual Hash:b1c6ce3131cece31
Difference Hash:0000001818000000
Wavelet Hash:f0f0f0c0c0f0f0f0
Color Hash:#ac5393

Other Hashes

Crop Resistant:0000001818000000

Scan History

Scan history not available

Unable to load historical scan data