Security Scan Report: dynamic-yeot-cfe7fa.netlify.app

Site favicon
Submitted: Sep 26, 2026, 1:50:23 PMCompleted: Sep 26, 2026, 1:51:49 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake 'Webmail Sign-in' phishing page on a Netlify subdomain: spoofed captcha gate collects email/password and exfiltrates them to a Telegram bot. Do not enter credentials.

Risk Factors (5)
Email + password login form on a throwaway Netlify subdomain
Fake browser-verification captcha gate mimicking Cloudflare/reCAPTCHA
'Session expired' social-engineering lure
Credential/session data exfiltrated via Telegram bot API and victim IP harvested via api.ipify.org
Single-source phishing IoC match plus Netlify-hosting phishing IDS heuristics
Domain age information unavailable

Details

Page Title

Webmail Sign-in

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'dynamic-yeot-cfe7fa.netlify.app' is registered with subdomain 'dynamic-yeot-cfe7fa'. The registrable portion 'netlify' spans 7 characters with 2 vowels and five consonants. It segments into 3 words: net, li, fy. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://dynamic-yeot-cfe7fa.netlify.app/

Page Load Overview

4.32s
Total Load Time
131 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:248 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical58% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
58%
technology software
57%
news media journalism
35%
healthcare medical
34%
cryptocurrency blockchain
34%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
263.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.13.95Google · CDNUnited States
AS15169Google LLC
1142.251.155.119Google · CDNUnited States
AS15169Google LLC
1142.251.127.99Google · CDNUnited States
AS15169Google LLC
1142.251.110.94Google · CDNUnited States
AS15169Google LLC
1104.26.13.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.156.119Google · CDNUnited States
AS15169Google LLC
1142.251.110.106Google · CDNUnited States
AS15169Google LLC
1211--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BD32E8636BB9043D2293D0B931B5A7847E35C10BDF41099A78BE1A944FCAE864877BC8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:O7Uq6jfD9jTZLox1JJyo4+KJAM7R0eyiYtmfezKrisLiZi4jb2UO4UWOAu:OABX0eyijGzKriyiZi4jDUWs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11998:LWQgxRMSCQ4pASWiFC5ACQAOVCIQxQB3sAha8ICjaEM1AGQSBImQCqAOAKXgRKBIOoQlKKKoZchKUIAmiBBMUANKZLhEgQMA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc3c3ffffffffff
Perceptual Hash:b131c6cece9b1931
Difference Hash:00061e0000000000
Wavelet Hash:fcc0c0fcf0f0f0f0
Color Hash:#2d6e86

Other Hashes

Crop Resistant:00061e0000000000

Scan History

Scan history not available

Unable to load historical scan data