Security Scan Report: facebook-theta.vercel.app

Redirected to:
https://facebook-theta.vercel.app/user-login
Site favicon
Submitted: Sep 18, 2026, 12:45:43 PMCompleted: Sep 18, 2026, 12:46:22 PMpubliccompleted

This website contacted 5 IPs in 1 country across 2 domains to perform 24 HTTP transactions. The main domain is facebook-theta.vercel.app and was registered 11 years ago.

Submitted URL: https://facebook-theta.vercel.app/

Effective URL:

https://facebook-theta.vercel.app/user-login
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 98%

10
Risk Score

Fake Facebook login hosted on Vercel; credential-harvesting page with Safe Browsing social engineering and phishing threat-intel match.

Risk Factors
Impersonates Facebook login on facebook-theta.vercel.app, not facebook.com
Harvests email and password via a login form
Google Safe Browsing Social Engineering detection
Primary domain flagged as phishing (single-source, unverified)
Meta description explicitly indicates a Facebook clone
Domain age information unavailable

Details

Page Title

Facebook

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'facebook-theta.vercel.app' is registered, featuring subdomain 'facebook-theta'. The registrable portion 'vercel' spans 6 characters holding 2 vowels versus four consonants. Word splitting yields two words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://facebook-theta.vercel.app/

Page Load Overview

2.29s
Total Load Time
327 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:136 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network97% confidence
Type: webapp
Method: ml+structural

All Detected Categories

social media network
97%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
4216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
464.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
4216.24.57.16United States
AS397273Render
4216.24.57.18United States
AS397273Render
245--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10341BF03FD09DE0A0872FECD8465A6299507CC3AEC359C08E2DDC55C0231BEB8B56C95

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TGi4GmlsGSKQa/WGq7oqYXkwAl/KaQGeq0gjnhfpPUAnv4fNbdN2aMsMt:TGvBs4Zu3y4pnvSrFMl

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2336:AAAAEABQgQBgAAABAAAQAAAACAAAEAAggQRAgCwQAAgGASAAAgnABAAIAABAAAAgAACACgABAQAAAAEAoAIBwAAAAgAAIAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8000181818180000
Perceptual Hash:d99866269999cc67
Difference Hash:0020323232323008
Wavelet Hash:fefcf8f8f8d80000
Color Hash:#6d2d86

Other Hashes

Crop Resistant:0020323232323008

Scan History

Scan history not available

Unable to load historical scan data