Security Scan Report: mlg2.arvionline.top

Redirected to: https://mlg2.arvionline.top/es/donar

Site favicon
Submitted: Mar 3, 2026, 3:45:20 PMCompleted: Mar 3, 2026, 3:46:44 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 24 HTTP transactions. The main domain is mlg2.arvionline.top and was registered NaN years ago.

Submitted URL: http://mlg2.arvionline.top/es/donar

Effective URL: https://mlg2.arvionline.top/es/donarRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Impersonates Riseup.net on a brand‑new, unranked domain; likely a phishing/brand‑impersonation scam.

Risk Factors
Brand impersonation (riseup.net) on a non‑official domain
Critical domain age (<7 days)
Unranked / low‑reputation domain
Domain‑brand mismatch (final URL does not belong to riseup.net)
Domain age information unavailable

Details

Page Title

Donar - riseup.net

Scan Type

public

Language

🇪🇸

Spanish

(80% confidence)

Category

technology software

(58%)

Domain Information

The domain name 'mlg2.arvionline.top' uses the .top top-level domain with subdomain 'mlg2'. The second-level label 'arvionline' is 10 characters long holding five vowels versus 5 consonants. It segments into three words: a, rvi, online. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://mlg2.arvionline.top/es/donar

Page Load Overview

4.91s
Total Load Time
25
HTTP Requests
1
Domains
62 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:es
Text Length:8,106 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software58% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
58%
documentation technical
46%
cryptocurrency blockchain
37%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
25188.114.96.3United States
AS13335Cloudflare, Inc.
251--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C1B28421E5E0457301D3A2A13E75EB2EAE92C947F90B685573FC87954FC2CCACE23259

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:z2+WzCSh1FxFInae59bNSkpYlUhTQUUGIyxi4D6UuJab0OzgKyc6F44:z4ZPxFIaoT/NMAISMazgQ6Fh

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:23398:gCQLeEGLAGFLBYJIAMS0EFX9VYW5DCokomKCMOxgkGQEKAAAAqiSSC25REJEkkABPS3ipQFUEgBNEvCCEgGClgMEkYWIaDGQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00f4ffffffffffff
Perceptual Hash:da6a666a6b691619
Difference Hash:018578cb795c4c7c
Wavelet Hash:00003e793d2f3f3f
Color Hash:#c58799

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data