booking.vazzda.com - malicious URL scan, 21 Aug 2026
MalwareAnalyzer by Cyble scanned booking.vazzda.com and returned a malicious verdict (score 55), categorised as credential-harvest. The page resolved to 76.76.21.142 on Vercel, Inc in US. The domain was registered 2363 days ago through Tucows Domains Inc.. 6 domains and 5 IPs were contacted, over 30 HTTP requests. This is a point-in-time observation from 21 Aug 2026; the page may have changed since.
Scan result
- Verdict: malicious (score 55) · Confidence 61%
- Scanned URL:
https://booking.vazzda.com/login - Domain: booking.vazzda.com · IP: 76.76.21.142 · AS16509 · US
- Server: Vercel
- Page title: Vazzda Agency OS
- HTTP status: 200 · text/html; charset=utf-8
- Registrar: Tucows Domains Inc. · domain age 2363 days · created 2020-03-02
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Nov 4 00: · subject CN=booking.vazzda.com
- HTTP requests captured: 30 · cookies set: 2
- Scan tier: standard · observed 2026-08-21 18:48:33 UTC
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- credential-harvest
Why this verdict
- Runtime data beacon to e1-0850197d5e074be58352ddc860645af6.ecs.us-east-1.on.aws
- Credential-harvesting form
Detected technologies
- Vercel
- Next.js
Contacted infrastructure
- 76.76.21.142 - AS16509 Vercel, Inc (United States)
- 157.240.8.23 - AS32934 Facebook, Inc. (Australia)
- 157.240.8.35 - AS32934 Facebook, Inc. (Australia)
Observed indicators
- booking.vazzda.com
- fonts.googleapis.com
- fonts.gstatic.com
- www.facebook.com
- connect.facebook.net
- e1-0850197d5e074be58352ddc860645af6.ecs.us-east-1.on.aws
- 76.76.21.142
- 172.217.25.202
- 157.240.8.23
- 157.240.8.35
- 34.205.198.139
- https://booking.vazzda.com/login
- https://booking.vazzda.com/landing/brand/vazzda-wordmark-light.png
- https://booking.vazzda.com/_next/static/chunks/0oxnsqm6~tkpx.css
- https://booking.vazzda.com/_next/static/chunks/151vh3~rueh4..css
- https://booking.vazzda.com/_next/static/chunks/0ty6swoef-2j_.js
- https://booking.vazzda.com/_next/static/chunks/0z6pu329131vx.js
- https://booking.vazzda.com/_next/static/chunks/00.0ekkmx6n2r.js
- https://booking.vazzda.com/_next/static/chunks/06g179yfj9y5b.js
- https://booking.vazzda.com/_next/static/chunks/0h_iztkuly6u9.js
Questions about booking.vazzda.com
- Is booking.vazzda.com safe?
- No. MalwareAnalyzer scanned booking.vazzda.com on 21 Aug 2026 and returned a malicious verdict with a score of 55 out of 100, categorised as credential-harvest. Treat it as hostile until it is re-checked.
- How was booking.vazzda.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of booking.vazzda.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan