Security Scan Report: happybirthday.unionworks.app

Submitted: Mar 29, 2026, 12:00:29 AMCompleted: Mar 29, 2026, 12:01:51 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is happybirthday.unionworks.app and was registered NaN years ago.

Submitted URL: https://happybirthday.unionworks.app

The Cisco Umbrella rank of the primary domain is #754,278 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

The site hosts a self‑branded page with a disguised password field and Unicode evasion, indicating credential harvesting; classify as high‑risk phishing.

Risk Factors
Disguised password field
Unicode evasion in form fields
Credential form without username
Low domain ranking for a brand‑related site
Domain age information unavailable

Details

Page Title

Happy Birthday

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

e-commerce shopping

(38%)

Domain Information

The domain 'happybirthday.unionworks.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'happybirthday'. The second-level label 'unionworks' is 10 characters long split between 4 vowels and 6 consonants. It segments into 2 words: union, works. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://happybirthday.unionworks.app

Page Load Overview

0.63s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:223 chars
Detector Agreement:100%

Website Classification

Primary Category

e-commerce shopping38% confidence
Type: static
Method: ml+structural

All Detected Categories

e-commerce shopping
38%
government public service
28%
technology software
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
352.56.239.214City of London, England, United Kingdom
AS16509Amazon.com, Inc.
31--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T118411B2280F22D7621439336A9C1F90E8F65A24B93090A05B9ED1BAC1FD5E43DAE730D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hRYU1SiuDTJ5ObM6k/84Macu+JxhHiXHeWTJTJruNi//4kcT:TlbM58lzHRNyAk6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1906:EAgBAAABAAIAAgCAGAABADAAAGAACAAIAAARIAAAAEAQAAAAgAAgIQAyAgAAAgBAAAAAEICAAEAAAAAAAAQAQAAAACEAIgDA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000ffffffffffff
Perceptual Hash:99194c666575b1f1
Difference Hash:3171900800000000
Wavelet Hash:00001c00f0f0f0f0
Color Hash:#40bf95

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data