Security Scan Report: pons-voting-h6.netlify.app

Site favicon
Submitted: Sep 17, 2026, 11:47:28 PMCompleted: Sep 17, 2026, 11:47:56 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Netlify-hosted crypto token-voting page flagged as phishing on its primary domain and calling an sslip.io dynamic-DNS API; no credential/payment forms, but the IoC plus masked backend make wallet interaction unsafe.

Risk Factors (4)
Single-source phishing threat-intel match on the primary domain
API calls to an IP-derived dynamic DNS endpoint (sslip.io)
Unverifiable creation date on an instant-publish hosting subdomain
Crypto asset/wallet interaction with an uncertain operator ("Pons Labs, LLC")
Domain age information unavailable

Details

Page Title

pons – Vote your token to get listed

Scan Type

public

Domain Name Analysis

The domain name 'pons-voting-h6.netlify.app' uses the application-focused generic top-level domain (.app) with subdomain 'pons-voting-h6'. The core label 'netlify' covers 7 characters containing 2 vowels alongside five consonants. Word splitting yields 3 words: net, li, fy. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pons-voting-h6.netlify.app

Page Load Overview

5.99s
Total Load Time
6.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,061 chars
Detector Agreement:50%

Website Classification

Primary Category

forum community discussion89% confidence
Type: static
Method: ml+structural

All Detected Categories

forum community discussion
89%
cryptocurrency blockchain
84%
documentation technical
75%
social media network
68%
technology software
67%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
363.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
2142.250.154.95Google · CDNUnited States
AS15169Google LLC
235.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
2142.251.127.95Google · CDNUnited States
AS15169Google LLC
245.61.137.217Amsterdam, North Holland, Netherlands
AS399629BL Networks
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2167.233.104.203Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
2104.18.18.237Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
178--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T181D100B3F4E0552B6212C68ABB75BB1BEEA2D507D5C99422B2ED4BD84F53D83C80350D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:aBy/1rjB207fFr96mAD/dANs9PGDhETLmRP:aBy/1rjB2079h6mADlWswEGRP

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6686:ElIQQSeQYgEYJAAGGCZA6SCTKKGAYCA4BCEoeBwRGLEABdAU8CgpLghijSS0BBgMZgAQJgImAAeEIIIOKEVgEEgAhzSMhIIB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:067076363c2c3c3c
Perceptual Hash:8664cf39b4b434d9
Difference Hash:94c3c5c4d1d5c9e5
Wavelet Hash:077171273d293d3c
Color Hash:#40bfa2

Other Hashes

Crop Resistant:94c3c5c4d1d5c9e5

Scan History

Scan history not available

Unable to load historical scan data