Security Scan Report: snip.ly

Redirected to: https://1762959614275-warm-authority.surge.sh/index.html?utm_source=sniply&utm_campaign=sniply&utm_medium=sniply

Submitted: Nov 22, 2025, 11:39:37 AMCompleted: Nov 22, 2025, 11:41:30 AMpubliccompleted
Loading additional data...

Summary

This website contacted 14 IPs in 3 countries across 5 domains to perform 24 HTTP transactions. The main domain is 1762959614275-warm-authority.surge.sh.

Submitted URL: https://snip.ly/p88482

Effective URL: https://1762959614275-warm-authority.surge.sh/index.html?utm_source=sniply&utm_campaign=sniply&utm_medium=sniplyRedirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Phishing login page likely harvesting email credentials

Risk Factors
Credential harvesting form on a suspicious, likely newly registered domain
Use of a shortener (snip.ly) to obscure the final destination
Impersonation of a webmail login page on a non‑official domain
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(38%)

Domain Information

Domain 'snip.ly' uses the Libyan country-code top-level domain (.ly) and has no subdomain. Its registrable label 'snip' stretches across 4 characters with 1 vowel and three consonants. Splitting it apart reveals 1 word: snip. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://snip.ly/p88482

Page Load Overview

0.98s
Total Load Time
24
HTTP Requests
5
Domains
405 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,309 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software38% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
38%
social_media
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14188.166.132.94Amsterdam, North Holland, Netherlands
AS14061DIGITALOCEAN-ASN
11142.250.185.74United States
AS15169GOOGLE
6142.250.181.227United States
AS15169GOOGLE
2172.217.18.10United States
AS15169GOOGLE
1142.250.185.202United States
AS15169GOOGLE
1142.250.186.131United States
AS15169GOOGLE
1172.66.148.43United States
AS13335CLOUDFLARENET
1142.250.185.170United States
AS15169GOOGLE
12a00:1450:4001:810::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
1104.20.47.26United States
AS13335CLOUDFLARENET
2414--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11D24A1B1D54C10DA7366C25FFF81B26CAAB9F32BD4164D96F01E9A0C8FD27880191F68

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:Fc/Px04YXGdFTyHQLYsNmUoZA5ZQRD8bq9O9fAlNEv0U9n:W/Px0yFTcUoZaZUD82OyU9n

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:226703:LAKWEDiKpKgkEnBAAUIayIZERRgDGBSX5yQlaBGMIAVgR2ImABJSGJpiRUBIgwmACDhXkMEGDUgAtCEgkElRQybwwAIUNBgJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7c3e7ffff
Perceptual Hash:b333c8cc66339999
Difference Hash:0c0c080c06080000
Wavelet Hash:3c24202003273f3f
Color Hash:#8b79d2

Other Hashes

Crop Resistant:0c0c080c06080000

Scan History

Scan history not available

Unable to load historical scan data