Security Scan Report: vavgxahwqq.vercel.app

Submitted: Oct 7, 2026, 12:45:07 AMCompleted: Oct 7, 2026, 12:45:44 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake Banco Pichincha credit page on a random vercel.app subdomain harvesting name, cédula and phone; flagged by Google Safe Browsing for social engineering. Do not enter personal data.

Risk Factors (6)
Impersonation of Banco Pichincha on a non-official, throwaway-looking vercel.app subdomain
Collects sensitive PII (full name, cédula, phone) under a bank's brand without authorization
Google Safe Browsing Social Engineering detection
Unknown subdomain creation age on a free shared-hosting namespace
Cross-origin request to api.ipify.org (likely visitor IP fingerprinting)
Unsolicited 'pre-approved credit' social-engineering script
Domain age information unavailable

Details

Page Title

Crédito en Línea - Banco Pichincha

Scan Type

public

Domain Name Analysis

Domain 'vavgxahwqq.vercel.app' uses the application-focused generic top-level domain (.app) with subdomain 'vavgxahwqq'. The core label 'vercel' covers 6 characters holding 2 vowels versus four consonants. Breaking it apart gives two words: ver, cel. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://vavgxahwqq.vercel.app/

Page Load Overview

3.68s
Total Load Time
1.1 MB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:es
Text Length:892 chars
Detector Agreement:75%

Website Classification

Primary Category

finance banking46% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
46%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3216.198.79.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1185.15.59.240United States
AS14907Wikimedia Foundation Inc.
1177.253.96.14Bogotá, Bogota D.C., Colombia
AS13489UNE EPM TELECOMUNICACIONES S.A.
164.29.17.195Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
64--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E682A56A56F30471ED93906927EB978A7154D003CC0ACE297FDD47808FCA994A9A3BCC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:grglY2Q3Pq4RS216S+8p/9GE6LXJIHtDghqYWHB1rYwzclN+IeKdgWx65/1j2R57:grahq7HzK0jVt+I0qGN0GeYur8uBG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18351:AQgBILjCAjhRgE03JOCwTS0UlNAKZmQQQM2VWRGzjxIMGTMCWHBeAQRSuhCCShWAIhEJQxpOTQbRgnDAhVVwAkC7bEgIQYsQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1818181818181818
Perceptual Hash:9933cc6699993333
Difference Hash:b2b2b2b2b2b2b2b2
Wavelet Hash:18181c1c1c1c1818
Color Hash:#2d7dd2

Scan History

Scan history not available

Unable to load historical scan data