Security Scan Report: fedf81-hbk27.vercel.app

Redirected to:
https://fedf81-hbk27.vercel.app/100045634734379/fbgw3gq354gwvresadfv.h...
Site favicon
Submitted: Sep 29, 2026, 12:45:01 PMCompleted: Sep 29, 2026, 12:45:34 PMpubliccompleted

This website contacted 8 IPs in 1 country across 4 domains to perform 19 HTTP transactions. The main domain is fedf81-hbk27.vercel.app and was registered 10 years ago.

Submitted URL: https://fedf81-hbk27.vercel.app/

Effective URL:

https://fedf81-hbk27.vercel.app/100045634734379/fbgw3gq354gwvresadfv.h...
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Phishing page impersonating Meta's Business Help Center on a vercel.app subdomain; uses a fake policy-violation appeal to harvest login credentials and 8-digit/6-digit verification codes. Safe Browsing flags social engineering.

Risk Factors (5)
Brand impersonation of Meta on a non-Meta domain
Credential and one-time verification code (2FA) harvesting form
Urgency/threat language about permanent account deletion to pressure victims
Domain unranked in Cisco Umbrella and hosted on abusable Vercel subdomain namespace
Network IDS alerts for actor-abused cloud hosting service (vercel.app)
Domain age information unavailable

Details

Page Title

Meta Business Help Center

Scan Type

public

Domain Name Analysis

Domain 'fedf81-hbk27.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'fedf81-hbk27'. The core label 'vercel' covers 6 characters with 2 vowels and 4 consonants. Breaking it apart gives 2 words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fedf81-hbk27.vercel.app/

Page Load Overview

0.26s
Total Load Time
402 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:vi
Text Length:4,016 chars
Detector Agreement:100%
Language mismatch: Declared as vi but detected as en

Website Classification

Primary Category

social media network47% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
47%
technology software
36%
documentation technical
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
564.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.26.8.44Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.21.31.228Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
264.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
2104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.67.180.104Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
198--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1375384B252F8227F506382C1AA275B0A3BE6E997E622456573BD17B41FE7CD3F807014

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:QJ2lCHX1gWFinXN9gJlBH+qpBaDQl13qF2hnjh:A/BH+qpUDQl13Fh

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:62740:AkyQkNUACMScYMuIppqkQiIASBmIMMADQTBNShAJEhs4DgeKPAWmEASshhzAYAklLSYcBEcCIQG4ICGIARCEIcCGEQ80SZFA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e78783e3efefefef
Perceptual Hash:b43c30c3c3c7c7cc
Difference Hash:4e3e260e090a0a0a
Wavelet Hash:a6828283e3e3e3e7
Color Hash:#785b3a

Other Hashes

Crop Resistant:4e3e260e090a0a0a

Scan History

Scan history not available

Unable to load historical scan data