Security Scan Report: wonderful-cobbler-5c5f0e.netlify.app

Redirected to:
https://wonderful-cobbler-5c5f0e.netlify.app/
Submitted: Aug 20, 2026, 12:45:08 AMCompleted: Aug 20, 2026, 12:46:21 AMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 5 HTTP transactions. The main domain is wonderful-cobbler-5c5f0e.netlify.app and was registered 8 years ago.

Submitted URL: http://wonderful-cobbler-5c5f0e.netlify.app/

Effective URL:

https://wonderful-cobbler-5c5f0e.netlify.app/
Redirected

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High‑risk phishing page impersonating Aruba Mail, collecting credentials on an unknown Netlify subdomain.

Risk Factors
Brand impersonation of Aruba on a free hosting subdomain
Credential collection form on unrelated domain
Safe Browsing social engineering detection
Unranked domain with no reputation
Domain age information unavailable

Details

Page Title

Sign in to Webmail - Aruba Mail

Scan Type

public

Domain Name Analysis

The domain name 'wonderful-cobbler-5c5f0e.netlify.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'wonderful-cobbler-5c5f0e'. Its registrable label 'netlify' stretches across 7 characters with 2 vowels and five consonants. Segmentation suggests three words: net, li, fy. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://wonderful-cobbler-5c5f0e.netlify.app/

Page Load Overview

2.34s
Total Load Time
663 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:798 chars
Detector Agreement:67%

Website Classification

Primary Category

government public service26% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
26%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
563.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
51--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14E8412B1276368350963A9BAD9523F1DAC80EBF7C167C68EF1D3A0D51ACCF019F11668

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:rDdsi+rK6MeRi4oU68qRQD7ZO9ApqDdsi+rK6MeRi4oU68qRQD7ZO9Appp:v6rKbeB68qiZfM6rKbeB68qiZf9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:376215:zgySBIAKSWgHgVAKxCBBUgOBIJkEBBIiCAiIPIqWUBiZhFE6sJBFUJRiFkViE2aweiCHTKUuCJwxJA0CFhKQiQWBFghlAiSM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff8f8f8b8bffffff
Perceptual Hash:b939c6c62dc2c23d
Difference Hash:ed3a381616b94410
Wavelet Hash:e18383830121ffff
Color Hash:#bfbd40

Scan History

Scan history not available

Unable to load historical scan data