Security Scan Report: zesty-phoenix-4e802f.netlify.app

Redirected to:
https://zesty-phoenix-4e802f.netlify.app/
Site favicon
Submitted: Jul 30, 2026, 1:45:07 PMCompleted: Jul 30, 2026, 1:46:27 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 2 HTTP transactions. The main domain is zesty-phoenix-4e802f.netlify.app and was registered NaN years ago.

Submitted URL: http://zesty-phoenix-4e802f.netlify.app/

Effective URL: https://zesty-phoenix-4e802f.netlify.app/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 94%

10
Risk Score

The site impersonates Roblox, hosts a login form that posts to an external domain, and is flagged by Safe Browsing and threat intel – confirmed credential phishing.

Risk Factors
Brand impersonation (Roblox) on unranked Netlify subdomain
Credential collection form with password field
External form submission to a different domain
Safe Browsing social engineering detection
Threat‑intel IP indicator
Domain age information unavailable

Details

Page Title

Log in to Roblox

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

entertainment media

(76%)

Domain Information

The domain 'zesty-phoenix-4e802f.netlify.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'zesty-phoenix-4e802f'. Its registrable label 'netlify' stretches across 7 characters with 2 vowels and 5 consonants. Word splitting yields three words: net, li, fy. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://zesty-phoenix-4e802f.netlify.app/

Page Load Overview

9.02s
Total Load Time
150
HTTP Requests
4
Domains
214 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,213 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media76% confidence
Type: spa
Method: ml+structural

All Detected Categories

entertainment media
76%
technology software
65%
download file sharing
38%
corporate
35%
corporate business
34%

Detected Features

Login Form
Search
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
75179.43.150.242Rümlang, Zurich, Switzerland
AS51852Private Layer INC
7563.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1502--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14393A666FB04BC32E81F57F1A0106A54D146EF25EA5AD8D4F0E4B3391ECCAE66E43463

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:Tc8XdFFeiamJtdtSnnO9P6cPd2Z7NYOGSbq1:Y8Xd76cl2pc

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:95552:BzFeQghcgCwqloNJE4wR6ASAQlIyCAAJAVRQVuSBQCVSADAIIxQEOAspFAQHBCho4Sc2AgMiAQpinIYAGEJZFAwHlSYcQ0AA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7f7f7f7f7f7f0f7f
Perceptual Hash:80c5ff00033ffc37
Difference Hash:808080c0c080c898
Wavelet Hash:707070300f4f077f
Color Hash:#bf406a

Other Hashes

Crop Resistant:808080c0c080c898

Scan History

Scan history not available

Unable to load historical scan data