Security Scan Report: listing-jfu5l7q1q.orbitrelaylogs.click

Submitted: Sep 15, 2026, 5:01:33 PMCompleted: Sep 15, 2026, 5:01:59 PMpubliccompleted

This website contacted 6 IPs in 1 country across 5 domains to perform 14 HTTP transactions. The main domain is listing-jfu5l7q1q.orbitrelaylogs.click and was registered 1 month ago.

Submitted URL: https://listing-jfu5l7q1q.orbitrelaylogs.click/?ca=gySe9HUWCng3fLv61BjQkzDgpVpsimqdhfpzS8Ppump

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

15-day-old unranked domain flagged for phishing, running a Solana wallet-connect token 'voting/points' funnel under a borrowed Robinhood token name — avoid connecting a wallet.

Risk Factors (6)
Primary domain reported as phishing (single-source, unverified)
Domain only 15 days old and unranked in Cisco Umbrella
Wallet-connect 'vote for points' mechanism with unverifiable reward claims
Crypto token branded with a well-known company name (Robinhood/HOOD) on an unrelated domain
Inline scripts using encoding/decoding functions and a Function() constructor call
External domains with non-standard TLDs (tokenadmin.lol, data-repo.cc) in page resources
Domain age information unavailable

Details

Page Title

HOOD – Robinhood · OrbitRelay

Scan Type

public

Domain Name Analysis

You're looking at domain 'listing-jfu5l7q1q.orbitrelaylogs.click' on the .click top-level domain, featuring subdomain 'listing-jfu5l7q1q'. The registrable portion 'orbitrelaylogs' spans 14 characters split between 5 vowels and 9 consonants. Splitting it apart reveals 3 words: orbit, relay, logs. The median word length lands at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://listing-jfu5l7q1q.orbitrelaylogs.click/?ca=gySe9HUWCng3fLv61BjQkzDgpVpsimqdhfpzS8Ppump

Page Load Overview

6.97s
Total Load Time
411 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,753 chars
Detector Agreement:75%

Website Classification

Primary Category

cryptocurrency blockchain47% confidence
Type: static
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
47%
government public service
31%
news media journalism
28%
entertainment media
27%
documentation technical
26%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4142.251.14.95Google · CDNUnited States
AS15169Google LLC
2188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.21.96.34Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.250.154.94Google · CDNUnited States
AS15169Google LLC
2188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.21.33.58Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
146--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13433E65BA6B31031653360AA6FEB560A3330E503910AC864BFDD53888FC67D9D9B778C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:jCSLt4gE+Iq+jPQepzGWfbG5uDS0k/VA3VMk5373:Rt4gE+0pq7+3VMkN

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:51694:EkVgBFgY2aibBMqQyoBghQMgkalChpnOAMgqTVRMJUAIkAARSCh8FEiCEECC8ohCuqAqYNAcZiiuQBCQELGBHymEJYhFxgIV

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fffffffffffffff
Perceptual Hash:870707070f0f1f3f
Difference Hash:8000000000000000
Wavelet Hash:70f0f0f0f0f0f0f0
Color Hash:#5f783a

Other Hashes

Crop Resistant:8000000000000000

Scan History

Scan history not available

Unable to load historical scan data