Security Scan Report: bluetick-service-fb.vercel.app

Site favicon
Submitted: Sep 24, 2026, 1:45:14 PMCompleted: Sep 24, 2026, 1:46:21 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake 'Meta Verified' business-verification page on a Vercel subdomain that harvests passwords and 2FA codes. Impersonates Meta on a domain it does not own — do not enter credentials.

Risk Factors (4)
Brand impersonation of Meta on a mismatched, unranked domain (not in Cisco Umbrella top 1M)
Credential collection (password) combined with 2FA code capture on a non-official domain
Shared-hosting tenant on .vercel.app with unknown page creation date
Anti-analysis: right-click/context-menu blocking and inline script encoding/decoding functions
Domain age information unavailable

Details

Page Title

Meta Verified for businesses | Verify your business on Facebook, Instagram and WhatsApp | Meta for Business

Scan Type

public

Domain Name Analysis

Domain 'bluetick-service-fb.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'bluetick-service-fb'. The registrable portion 'vercel' spans 6 characters holding 2 vowels versus 4 consonants. Breaking it apart gives two words: ver, cel. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bluetick-service-fb.vercel.app/?532435434233232324

Page Load Overview

28.59s
Total Load Time
3.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:11,954 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network82% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
82%
corporate business
71%
technology software
59%
documentation technical
55%
government public service
49%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
27216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
21142.250.154.95Google · CDNUnited States
AS15169Google LLC
21172.67.68.11Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
21172.67.180.104Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2164.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
21104.26.2.143Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
21104.21.31.228Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
21157.240.0.6Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
21172.67.70.222Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
21104.26.14.209Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
23711--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13F41671BAF7D24343100835BE8D0BD59DB6A831F1585692574DA838E1FB829B91E3935

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hRYwBGyMRvfSe/+g2yMR5Le/+g7VnmaEnwvcT8h0qN/KN/lblmOZThVG:TMyMpZ2yMTmpfEnwvclqNSNpgAThU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2134:AACRAAAABAABARYiACRAoAAAAAKAAAAAAAAgAAAAAAAAgOCAAAIACgAiBABAABCBEAAACFAAAACAAiEAAAoAAgIAQAAIgEBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fff9f9e1f3b1f1f3
Perceptual Hash:ef9b902cb4629b64
Difference Hash:6a034b6b27632327
Wavelet Hash:7ef9a18181a1f1f1
Color Hash:#784f3a

Scan History

Scan history not available

Unable to load historical scan data