Security Scan Report: superlative-churros-af7f7c.netlify.app

Site favicon
Submitted: Sep 22, 2026, 10:50:06 PMCompleted: Sep 22, 2026, 10:50:41 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake 'Página Oficial Serasa' page on an unrelated netlify.app subdomain soliciting CPF data under a fake 'Limpa Nome' campaign - clear brand impersonation and data harvesting.

Risk Factors
Impersonation of a major financial/credit bureau (Serasa) on a domain it does not own
Collection of CPF (sensitive national ID) personal data
Urgency/scarcity pressure ('O FEIRÃO LIMPA NOME ACABA HOJE!')
Fake social-proof notification ('Ana quitou por R$ 376,91')
Unknown-age, unranked hosting-platform subdomain used for a supposedly 'official' brand page
Domain age information unavailable

Details

Page Title

Atendimento

Scan Type

public

Domain Name Analysis

You're looking at domain 'superlative-churros-af7f7c.netlify.app' on the application-focused generic top-level domain (.app) with subdomain 'superlative-churros-af7f7c'. The second-level label 'netlify' is 7 characters long split between two vowels and five consonants. Tokenizing the label suggests three words: net, li, fy. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://superlative-churros-af7f7c.netlify.app/

Page Load Overview

1.96s
Total Load Time
173 KB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt-BR
Text Length:291 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service54% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

government public service
54%
real estate property
47%
finance banking
41%
healthcare medical
37%
adult content
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
363.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
335.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
62--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10C8265EB9A5300963C13E5643FB65B472236C103D209CD797FDC635CCF856D8A9A2B98

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:t+Bg6fcqL8aERA+n4Q/7TgotSzsoBpea1AX76/o6HMBch0msRgu67CkbZdZ3ZAWP:uFXZqByU3k37c7I

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18588:AQRE4chpAKCDaoDIIETyOLIjgxOYYqEFADAEcoLAKonqAI4wtpBAAwmFAEIcAjuUCAEYBZkGuwMIiIKFkwDgB5AAFEUI5Hlk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffffffffff
Perceptual Hash:d52a556a556a556a
Difference Hash:0080000000000080
Wavelet Hash:00f3c0c0f0f0f4ff
Color Hash:#c5b387

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data