Security Scan Report: refund-vertex.com

Redirected to:
https://refund-vertex.com/?fake_crap_for_dvmb_naive_idlots
Site favicon
Submitted: Jul 18, 2026, 1:31:29 AMCompleted: Jul 18, 2026, 1:33:02 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 2 HTTP transactions. The main domain is refund-vertex.com and was registered NaN years ago.

Submitted URL: http://refund-vertex.com/?fake_crap_for_dvmb_naive_idlots

Effective URL: https://refund-vertex.com/?fake_crap_for_dvmb_naive_idlotsRedirected

AI Security Verdict

High Risk

Confidence: 82%

7
Risk Score

The site is a high‑risk brand‑impersonation scam targeting victims of financial fraud with a very new, unranked domain and contact forms collecting personal data.

Risk Factors
Very new domain
Brand impersonation of a legal service
Unranked / no reputation
Low legitimacy score
Domain age information unavailable

Details

Page Title

Vertex-Vegal

Scan Type

public

Language

🇺🇸

English

(41% confidence)

Category

unknown

(0%)

Domain Information

Within the commercial generic top-level domain (.com), 'refund-vertex.com' is registered. Count 13 characters in 'refund-vertex' containing 4 vowels alongside 8 consonants, plus 1 hyphen. Segmentation suggests two words: refund, vertex. Expect six characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://refund-vertex.com/?fake_crap_for_dvmb_naive_idlots

Page Load Overview

7.05s
Total Load Time
151
HTTP Requests
10
Domains
2.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:41%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:41%
Script Type:Latin
HTML Lang Attribute:ru-RU
Text Length:11,501 chars
Detector Agreement:67%
Language mismatch: Declared as ru but detected as en

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

Search
Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
51142.251.13.97Google · CDNUnited States
AS15169Google LLC
50142.251.110.95Google · CDNUnited States
AS15169Google LLC
50172.67.181.217Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1513--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E4A4A773611A28271137C2D620AA5739D19E9F97F6524B81AAFCD7FD3BE4CE03163218

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:2/3AQHQk9dswPmY8+Nmg4iBSQ7hYYYvYYYMQ:7QHQ/nYNSQ7EQ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:455394:AGEfw+yFCEJAMD8Wn5rSAQmTINIxSKNoqERfgCgH+AAYFBSIFYkAMSqQQKohASIAoETGiM4HgRjCFoZLCpEikGAsDAo1JCcC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:83002476076f0465
Perceptual Hash:b2ac6b21a51ec33e
Difference Hash:6b8dedc4ceca4ddd
Wavelet Hash:83013577076f04ff
Color Hash:#d22d61

Scan History

Scan history not available

Unable to load historical scan data