Security Scan Report: melodic-toffee-e5fd99.netlify.app

Submitted: Sep 20, 2026, 12:45:35 PMCompleted: Sep 20, 2026, 12:46:32 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 90%

5
Risk Score

Fake 'Centro de Recarga Roblox' on a netlify subdomain impersonates Roblox's official store, baits users with a 90% discount and funnels them to a phishing login at robloxreward.site.

Risk Factors (5)
Impersonation of Roblox official store on a mismatched third-party hosting subdomain
Credential (username) harvesting form tied to a fake 'discount' lure
Redirect/off-domain login funnel to robloxreward.site
Too-good-to-be-true 90% discount offer
Unranked domain outside Cisco Umbrella top 1M
Safety Factors (2)
No password or payment fields captured on this specific page
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 9 to 5
Domain age information unavailable

Details

Page Title

Centro de Recarga Roblox

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'melodic-toffee-e5fd99.netlify.app' is registered with subdomain 'melodic-toffee-e5fd99'. The core label 'netlify' covers 7 characters with two vowels and five consonants. Segmentation suggests 3 words: net, li, fy. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://melodic-toffee-e5fd99.netlify.app/

Page Load Overview

6.87s
Total Load Time
51 KB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt
Text Length:353 chars
Detector Agreement:50%

Website Classification

Primary Category

entertainment media48% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

entertainment media
48%
corporate business
43%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
635.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
3172.67.68.221Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
363.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
3104.26.10.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.67.74.152Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.26.11.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
216--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18F93C56851F640266C13A1F9F7EEA56C6639A08BDD1ECE64FFCC23148F906E24D4B358

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:NwXOObFjhIdTSMect5rzFJj4EuNbSO/Xr4Lf9HAx7KK5dDPy/hNZomIqUC3jR4tT:TdeUXj4Ek/s9HApIhNzhjetB4sq2f

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:95330:WJYUAgphCNAQqiOMHBKAI8EOycLNgUsdQjyAFmcQqjQKZ0KYZA3EnI2KSEFKoExC0QBBkXQFJKAuKQccAhAkIUQBCHEsAAAD

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000000ffffffffff
Perceptual Hash:b00e03b1ced7f8c3
Difference Hash:010105209616080a
Wavelet Hash:000000dfcfc3efff
Color Hash:#ced279

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data