Security Scan Report: ecountt.vercel.app

Site favicon
Submitted: Sep 26, 2026, 8:50:28 AMCompleted: Sep 26, 2026, 8:51:42 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake 'Ecount WebMail' login page on the typosquat vercel subdomain ecountt, copying a real brand and harvesting email/password credentials; a phishing IoC also flags the domain. Do not enter credentials.

Risk Factors (4)
Brand impersonation of Ecount on a non-Ecount, unranked hosting subdomain
Credential login form (password + email fields) on an impersonating domain
Single-source phishing threat-intel match on the scanned primary domain
Hosted on instant-publish vercel.app subdomain (ecountt — note the duplicated 't', typosquat pattern)
Domain age information unavailable

Details

Page Title

Ecount WebMail - Login

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'ecountt.vercel.app' is registered and includes subdomain 'ecountt'. Its registrable label 'vercel' stretches across 6 characters split between two vowels and 4 consonants. It segments into 2 words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ecountt.vercel.app/

Page Load Overview

4.84s
Total Load Time
383 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:60%
Script:Latin
Direction:ltr

Detection Details

Text Length:888 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical62% confidence
Type: webapp
Method: ml+structural

All Detected Categories

documentation technical
62%
technology software
60%
finance banking
43%
government public service
27%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
364.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
118.66.102.7Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
1151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
118.66.102.84Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
118.66.102.103Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
143.200.46.3Aws · CLOUDIncheon, Incheon, South Korea
AS16509Amazon.com, Inc.
86--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10DA2C650A4F91573055381E939A2F6193DA2D117CB0ADE04BAEC4BEA6FC3F428D0779D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:NYD+7Nca26dSpzZIg5eZ9BV9Qq3y3bS3gOv+8qr1hW6ecIZ/96:NI1a26dS5ZIg52VR3HyrJZ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:21516:BGApI1kSKTggtmuAAkCgi60YUJ44q0eAMhUvMkcCQIB7KoDIJJMJImACCYgaABECGRSBrAh6hYjAUkayJNNgQWzVAAG+QhVT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe6fee7e7ffff
Perceptual Hash:f755882276dd5522
Difference Hash:00214e124d0c3000
Wavelet Hash:ffffc2c204040f0f
Color Hash:#1f7693

Other Hashes

Crop Resistant:00214e124d0c3000

Scan History

Scan history not available

Unable to load historical scan data