Security Scan Report: netflix-two-mu.vercel.app

Redirected to:
https://netflix-two-mu.vercel.app/signup/
Site favicon
Submitted: Sep 18, 2026, 12:45:28 AMCompleted: Sep 18, 2026, 12:46:18 AMpubliccompleted

This website contacted 4 IPs in 1 country across 3 domains to perform 10 HTTP transactions. The main domain is netflix-two-mu.vercel.app and was registered 21 years ago.

Submitted URL: http://netflix-two-mu.vercel.app/signup/

Effective URL:

https://netflix-two-mu.vercel.app/signup/
Redirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake Netflix signup page on a vercel.app subdomain impersonates Netflix and collects email/password credentials. High-risk credential phishing; do not enter credentials.

Risk Factors
Netflix brand impersonation on a non-Netflix vercel.app subdomain
Credential-collection form with password field on an unaffiliated domain
Copied Netflix footer and branding lack disclosure of non-affiliation
Unknown actual subdomain age on shared hosting platform
Domain age information unavailable

Details

Page Title

Netflix

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'netflix-two-mu.vercel.app' is registered with subdomain 'netflix-two-mu'. The core label 'vercel' covers 6 characters holding two vowels versus four consonants. Segmentation suggests 2 words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://netflix-two-mu.vercel.app/signup/

Page Load Overview

9.98s
Total Load Time
553 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:457 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media90% confidence
Type: static
Method: ml+structural

All Detected Categories

entertainment media
90%
technology software
62%
corporate business
59%
adult content
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
464.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2142.251.110.95Google · CDNUnited States
AS15169Google LLC
2104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
104--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19A41E6D675A0F89C235219A20C3BB02AF52D293C0BB4F8C0A399D5F9BCB41C98028E65

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:T3XpXANa98vC7Re1dRISbDErfuqH9a3JokV:THJP98vC7RevRIgYRmV

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2349:EBAAABAAIAAgQBEAAKwAAgAAAAAACgAgAAIRAcQACElQIAADQAAAECBCAEAAAIAiBAAAgAAEACAhAAAAAkAEQIggAAJQAQQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000d9ffe7e74400
Perceptual Hash:a2dd0da6b2d8699a
Difference Hash:0dc4130d8d8f95c9
Wavelet Hash:0100d9ffffe74700
Color Hash:#5f3a78

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data