Security Scan Report: 7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev

Submitted: Oct 13, 2025, 11:15:15 PMCompleted: Oct 13, 2025, 11:15:29 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is 7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev.

Submitted URL: https://7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev/

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Phishing site impersonating Produbanco; do not enter credentials.

Risk Factors
Brand impersonation on non‑official domain
Login form collecting credentials
Hidden password field (obfuscation)
Unranked / low‑reputation domain
Likely newly registered domain
Domain age information unavailable

Details

Page Title

Produbanco - Login

Scan Type

public

Language

🇪🇸

Spanish

(51% confidence)

Category

finance banking

(58%)

Domain Information

Within the developer-focused generic top-level domain (.dev), '7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev' is registered with subdomain '7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard'. The core label 'replit' covers 6 characters split between 2 vowels and four consonants. It segments into two words: rep, lit. The median word length lands at three characters. 'rep' most strongly signals Catalan. Usage also turns up in English and Chinese (Pinyin) contexts. Overall, '7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev' reads as Catalan.

Screenshot

Security scan screenshot of https://7c1e5946-3bb2-4baf-b8e1-b0640294e753-00-292yx5m79tfgp.picard.replit.dev/

Page Load Overview

2.09s
Total Load Time
3
HTTP Requests
1
Domains
168 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:51%
Script Type:Latin
HTML Lang Attribute:es
Text Length:150 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking58% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
58%
cryptocurrency blockchain
34%
adult content
27%
technology software
26%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
335.226.206.236Council Bluffs, Iowa, United States
AS396982GOOGLE-CLOUD-PLATFORM
31--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D682971A25F74131696FF2581BAB9314326BD303E60ACFE43A9C53444F85EC98DA33AD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:/6tS5aOdD+/+IZh/ZU7+AW6yJ/QtFBgdkrLOmkLVXW0BOd2EPzbMOOe3lxmv+rU2:/lKWzYOO6P0TXFLn5l+LsfG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17613:sgBUUCMIKYClmicGYAoBlIABGqZn5gADAofQUIJCIIkJJIFDIUAao9qAADIiUBAQwCPZQEOZADUBCMBHAHAQQ7EvTMiQAikR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data