Security Scan Report: www.paypal-secure.vercel.app

Redirected to:
https://paypal-secure.vercel.app/
Submitted: Jul 28, 2026, 2:45:39 AMCompleted: Jul 28, 2026, 2:48:42 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 2 HTTP transactions. The main domain is paypal-secure.vercel.app and was registered NaN years ago.

Submitted URL: http://www.paypal-secure.vercel.app/

Effective URL: https://paypal-secure.vercel.app/Redirected

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

The site mimics PayPal login on an unranked Vercel subdomain, collects only email, and lacks strong malicious signals; treat as moderate risk.

Risk Factors
Unranked / low‑reputation domain
Unknown subdomain age on hosting platform
Brand impersonation (self‑branding does not match official PayPal domain)
Credential collection form (email only) on a brand‑like page
Safety Factors
No password or payment fields
No external redirects or cross‑origin form submissions
No JavaScript malware matches or credential exfiltration
No network IDS alerts
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 5 to 3
Domain age information unavailable

Details

Page Title

Sign in to PayPal

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(50%)

Domain Information

The domain name 'www.paypal-secure.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'www.paypal-secure'. The second-level label 'vercel' is 6 characters long containing two vowels alongside four consonants. It segments into 2 words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.paypal-secure.vercel.app/

Page Load Overview

5.04s
Total Load Time
13
HTTP Requests
2
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:142 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking50% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
50%
e-commerce shopping
48%
technology software
47%
social media network
35%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7216.198.79.195United States
AS16509Amazon.com, Inc.
6216.198.79.131United States
AS16509Amazon.com, Inc.
132--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T191926584B41C127C5D3BAB15EEC8A32CC125FD43EE624436A10D048EEAD6FF539A6F95

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:XkOx05nrGPKJgg8T4xksc64Jysq7vWGeVV0RXe3wQ:10rGV4xksc64Jysq7vkVV0RXe3j

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:20387:ElgIESsLoIAGwyCCkAcAE0ixgiwmWOoAUQWlinYIiAAqTQQVYgFsCEgGUhApRAGRrBIMQCBV1KSxgGJWFlCRDYZRMGEJBCaE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7ff41000000
Perceptual Hash:b3b3999c8c666626
Difference Hash:2a5a4d0841111111
Wavelet Hash:ffffe7ff09000000
Color Hash:#acbf40

Other Hashes

Crop Resistant:2a5a4d0841111111

Scan History

Scan history not available

Unable to load historical scan data