Security Scan Report: ar24-sigma.vercel.app

Redirected to:
https://ar24-sigma.vercel.app/
Submitted: Aug 29, 2026, 3:51:11 AMCompleted: Aug 29, 2026, 3:52:16 AMpubliccompleted

This website contacted 8 IPs in 3 countries across 5 domains to perform 11 HTTP transactions. The main domain is ar24-sigma.vercel.app and was registered 13 years ago.

Submitted URL: http://ar24-sigma.vercel.app/

Effective URL:

https://ar24-sigma.vercel.app/
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Page impersonates AR24, harvests login credentials and exfiltrates them externally with anti‑analysis tricks – confirmed phishing scam.

Risk Factors
Brand impersonation on unranked hosting subdomain
Credential form harvesting login data
Anti‑analysis techniques (DevTools/right‑click blocking)
External exfiltration of credentials to third‑party domain
Unknown subdomain creation date (treated as unknown age)
Domain age information unavailable

Details

Page Title

Connexion - AR24

Scan Type

public

Domain Name Analysis

Domain 'ar24-sigma.vercel.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'ar24-sigma'. The second-level label 'vercel' is 6 characters long containing two vowels alongside 4 consonants. Breaking it apart gives 2 words: ver, cel. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://ar24-sigma.vercel.app/

Page Load Overview

0.80s
Total Load Time
62 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr
Text Length:1,386 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical65% confidence
Type: webapp
Method: ml+structural

All Detected Categories

documentation technical
65%
government public service
62%
download file sharing
53%
corporate business
42%
blog personal website
36%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
464.29.17.67United States
AS16509Amazon.com, Inc.
1173.231.16.77United States
AS18450WebNX, Inc.
1185.183.140.162France
AS211068AR24 SAS
1104.237.62.213El Segundo, California, United States
AS18450WebNX, Inc.
1216.198.79.67United States
AS16509Amazon.com, Inc.
1149.154.166.110Amsterdam, North Holland, Netherlands
AS62041Telegram Messenger Inc
134.117.59.81Google · CDNKansas City, Missouri, United States
AS396982Google LLC
1185.183.140.161France
AS211068AR24 SAS
118--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EEB2F91228F31D2659A7D1A63B9353C63021D003A517CA84B6DD33A48FCFE968EA37DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:1d5cNG8u2N/2NzwBikjzgJWBJ1nU1Yae1bSf3ylGIddwypNB5:9/rM/2ZYzgJWhnSYaybSf3yvwg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24564:W4AAIoDkiASkHAIJIYIxoYCKoZxGAMupAAOkp5EVkyAxCaCcwtgZQUpxSEDcR0hIIaDsBBBIBbdCAwAQgRELSCwFEkJEI8IE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefefefefefefeff
Perceptual Hash:d555aa55aaa855aa
Difference Hash:0202020202020000
Wavelet Hash:0e0e0e0e0c0c0c0d
Color Hash:#5b3a78

Other Hashes

Crop Resistant:0202020202020000

Scan History

Scan history not available

Unable to load historical scan data