Security Scan Report: spotfricarewardbquiz.netlify.app

Site favicon
Submitted: Sep 26, 2026, 1:50:35 PMCompleted: Sep 26, 2026, 1:52:43 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Spotify-branded fake reward survey on a netlify.app subdomain. It lures users with promised cash payouts, harvests emails, then demands an upfront 'anti-fraud fee' before withdrawal — a clear survey/reward advance-fee scam.

Risk Factors (4)
Impersonation of the Spotify brand on a domain that is not Spotify's official domain
Bait-and-trap reward scheme promising cash for survey answers
Mandatory upfront 'anti-fraud fee' required before withdrawal — advance fee fraud
Untrusted free hosting subdomain (netlify.app) with unknown creation age, unranked reputation
Domain age information unavailable

Details

Page Title

Spotify Opina | Avalie

Scan Type

public

Domain Name Analysis

The domain name 'spotfricarewardbquiz.netlify.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'spotfricarewardbquiz'. The second-level label 'netlify' is 7 characters long split between two vowels and five consonants. Breaking it apart gives 3 words: net, li, fy. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://spotfricarewardbquiz.netlify.app/

Page Load Overview

8.75s
Total Load Time
25.9 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:31%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-BR
Text Length:4,637 chars
Detector Agreement:33%
Language mismatch: Declared as pt-BR but detected as en

Website Classification

Primary Category

entertainment media45% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

entertainment media
45%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
663.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
3142.251.13.95Google · CDNUnited States
AS15169Google LLC
3104.18.1.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.67.68.221Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.26.13.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
399.84.91.82Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
32.22.50.138Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
3188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.26.11.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
335.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
5417--

Detected Technologies4

JQueryv3.6.4
100%
40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17F0371D31E00553FB713C1D431238B3AF2258585EF469AB83AEC41E1B6D9E694D2E2DE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:amwYjauz7uSENarH8kPWJG3Vy0KZ9jor78g6vH3ON+63/WmU3l/3OWM:acauziSWaD88Ws3VypZdo/8fQU3lw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:41218:Ii2xFCUEJGFIBgCiRcQiIZAQEiBQMaAM0KyQEKBIGLIIBCQxcgKBhkMARxVIcWgSLPBzAFgQLEWYQCojHMiHkwwAFAmIZWIw

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffe7ef00
Perceptual Hash:b3cc6eb14e8433cc
Difference Hash:00000021909c8c23
Wavelet Hash:00000000ffe7ef00
Color Hash:#2d6e86

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data