Security Scan Report: farmapay-replica.vercel.app

Site favicon
Submitted: Jul 9, 2026, 1:50:19 PMCompleted: Jul 9, 2026, 1:51:31 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 3 domains to perform 9 HTTP transactions. The main domain is farmapay-replica.vercel.app and was registered NaN years ago.

Submitted URL: https://farmapay-replica.vercel.app/

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

The site mimics Farmapay with a login form on an unknown-age Vercel subdomain, indicating a high‑risk brand impersonation phishing attempt.

Risk Factors
Unranked domain
Subdomain on hosting platform with unknown age
Brand impersonation of a financial service
Credential collection form
Domain age information unavailable

Details

Page Title

Farmapay - Login

Scan Type

public

Language

🇪🇸

Spanish

(80% confidence)

Category

finance banking

(84%)

Domain Information

You're looking at domain 'farmapay-replica.vercel.app' on the application-focused generic top-level domain (.app), featuring subdomain 'farmapay-replica'. The second-level label 'vercel' is 6 characters long with 2 vowels and 4 consonants. Tokenizing the label suggests two words: ver, cel. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://farmapay-replica.vercel.app/

Page Load Overview

1.55s
Total Load Time
9
HTTP Requests
3
Domains
215 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:es
Text Length:136 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking84% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
84%
healthcare medical
79%
government public service
31%
adult content
30%
phishing scam
27%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3172.217.208.95Google · CDNUnited States
AS15169Google LLC
2142.250.154.94Google · CDNUnited States
AS15169Google LLC
264.29.17.3United States
AS16509Amazon.com, Inc.
2216.198.79.3United States
AS16509Amazon.com, Inc.
94--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16241211068F50823018380D06BE0AE2B3ED6A517DA0B8A4076FC4FC99FC7E87CD6765D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:oCDMtWOKZwfN2hLR5F3ZXG8wQaV+ONFUDYbc4HN9uENdu53KfNsx0MrRHRBJ3Kj:AMw1Il5F3ZX1w1FUDcHxbKorQRu

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2371:AAgAAAAAAICGAgCAAAIACAAAAQAAAAAQAUEIIAAAYAQAAUAACIACAABcABQBBgIAQIoJAgGAAAAAAADAEAAIDASAIAEEABgE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0f0f0f191f0f0f0f
Perceptual Hash:99cc318e6949b3b6
Difference Hash:dadbdb333bf89a9a
Wavelet Hash:0f0f0f191f0f0f0f
Color Hash:#87a2c5

Scan History

Scan history not available

Unable to load historical scan data