Security Scan Report: w5r6r7838783.netlify.app

Site favicon
Submitted: Sep 29, 2026, 12:45:16 AMCompleted: Sep 29, 2026, 12:46:40 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake courier fee page impersonating 'The Courier Guy' on a random netlify subdomain, demanding an urgent card payment for a bogus shipment. Do not pay; report as an advance-fee scam.

Risk Factors (5)
Brand impersonation of 'The Courier Guy' on a non-official domain
Advance-fee shipping payment demand with urgent 24-hour deadline
Payment/card collection solicited through a relay page (cc.html)
Random high-entropy subdomain on a shared free hosting platform
No legitimate domain reputation and no ownership of the claimed brand
Domain age information unavailable

Details

Page Title

The Courier Guy

Scan Type

public

Domain Name Analysis

Domain 'w5r6r7838783.netlify.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'w5r6r7838783'. Count 7 characters in 'netlify' holding 2 vowels versus five consonants. Segmentation suggests 3 words: net, li, fy. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://w5r6r7838783.netlify.app/

Page Load Overview

27.91s
Total Load Time
358 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:797 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking59% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
59%
government public service
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
535.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
4157.240.0.6Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
4142.250.154.97Google · CDNUnited States
AS15169Google LLC
463.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
4192.178.183.97Google · CDNUnited States
AS15169Google LLC
215--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C2145F47E5B225F90B33923913CF958472688CABE802FDA9BACD94458F892FD0D13757

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:HGW+mSmOmSm8mSmRmSmxmSmImSmUmSmtMZeRMA3ZbQWXDdj3fhfsf9fWfMfif1f4:31qe7wCk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:199473:yjjhFKYoAEQSTgCYNdAoBDQD2ATRXY5iBADNYBiAgBCCblEadO4BDIwCgSD8SpVEIoIWArAhMNBwyiVMQAAINJwAMGkgUwBq

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:07bbf9c9c9f3e7ff
Perceptual Hash:ec0986261962cfbf
Difference Hash:da56439333470c12
Wavelet Hash:02b381c8c8f8e7fb
Color Hash:#e06c6c

Other Hashes

Crop Resistant:da56439333470c12

Scan History

Scan history not available

Unable to load historical scan data