Security Scan Report: fact-708-2026.netlify.app

Submitted: Sep 13, 2026, 9:47:30 PMCompleted: Sep 13, 2026, 9:47:49 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Phishing page on a netlify.app subdomain posing as WeTransfer/Orange: a fake 'secure invoice' lure leads to a login form harvesting email and password credentials. Do not enter any credentials.

Risk Factors (5)
Email + password login form capturing credentials on a free hosting subdomain
Impersonation of Orange (and WeTransfer branding in the title) on a non-official domain
Invoice/document lure ('FACTURE-768-2026') to induce sign-in
Right-click context menu blocked and obfuscation/encoding in inline JavaScript
Noindex-free, unranked subdomain with unknown creation date behind a shared platform
Domain age information unavailable

Details

Page Title

Wetransfer - Partage de document.

Scan Type

public

Domain Name Analysis

The domain 'fact-708-2026.netlify.app' uses the application-focused generic top-level domain (.app) with subdomain 'fact-708-2026'. The registrable portion 'netlify' spans 7 characters with two vowels and 5 consonants. Word splitting yields three words: net, li, fy. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fact-708-2026.netlify.app

Page Load Overview

2.06s
Total Load Time
190 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr
Text Length:477 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking42% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
42%
download file sharing
34%
documentation technical
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2104.26.3.143Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
163.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1104.26.2.143Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
135.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
54--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ED0110678102A81600B094A72BF0F10C66AE3A67D7258CC0B8CE03B94F4AFF721D6E4D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12:hohKxrdf7SBwsXl4Z5imbrXWj/3YaMn5C/rr4s+oFK5imxFrXVj/3gy7vLhVG:hohKTGh1Iqj/3YaY5C/rXNFqj/3gCDhU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:757:CgAAAAAAAAAAAAgAAAAAAAAAABAAAiAAAAAAAAAAAEAAAAAAAAQAAAEAAAAAACAAAEBAAAAAgAQAAAAAAAAAAAAAAEAAAAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7ffefe7e7ffff
Perceptual Hash:b333666664999999
Difference Hash:4c4c1a084d4c0800
Wavelet Hash:07272f2727271f07
Color Hash:#1f9331

Other Hashes

Crop Resistant:4c4c1a084d4c0800

Scan History

Scan history not available

Unable to load historical scan data