Security Scan Report: tmod-servey.netlify.app

Redirected to:
https://tmod-servey.netlify.app/
Site favicon
Submitted: Sep 23, 2026, 11:50:02 PMCompleted: Sep 23, 2026, 11:50:56 PMpubliccompleted

This website contacted 12 IPs in 2 countries across 9 domains to perform 20 HTTP transactions. The main domain is tmod-servey.netlify.app and was registered 21 years ago.

Submitted URL: http://tmod-servey.netlify.app

Effective URL:

https://tmod-servey.netlify.app/
Redirected

AI Security Verdict

High Risk

Confidence: 55%

7
Risk Score

Self-branded Arabic survey-builder tool on a Netlify subdomain. No impersonation, IoC, YARA or IDS evidence; its own admin login on an unranked, unknown-age host warrants caution only.

Risk Factors (2)
Credential-collecting admin login on an unranked hosting-platform subdomain of unknown creation date
Typosquat-style naming ('tmod-servey') and encoding/decoding functions in inline scripts warrant caution
Domain age information unavailable

Details

Page Title

استرداد الاستبيانات القديمة · tmod-community

Scan Type

public

Domain Name Analysis

You're looking at domain 'tmod-servey.netlify.app' on the application-focused generic top-level domain (.app); it also runs on subdomain 'tmod-servey'. The second-level label 'netlify' is 7 characters long split between 2 vowels and five consonants. Breaking it apart gives three words: net, li, fy. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://tmod-servey.netlify.app

Page Load Overview

2.22s
Total Load Time
834 KB
Total Size

Language Analysis

Primary Language

🇸🇦Arabic
Code: ar
Confidence:80%
Script:Arabic
Direction:rtl

Detection Details

HTML Lang Attribute:ar
Text Length:878 chars
Detector Agreement:67%

Website Classification

Primary Category

documentation technical59% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
59%
government public service
59%
technology software
58%
cryptocurrency blockchain
55%
finance banking
47%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
935.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1192.178.183.95Google · CDNUnited States
AS15169Google LLC
1142.250.154.94Google · CDNUnited States
AS15169Google LLC
1104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
163.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1142.250.154.95Google · CDNUnited States
AS15169Google LLC
1142.251.110.94Google · CDNUnited States
AS15169Google LLC
1151.101.129.229Fastly · CDNUnited States
AS54113Fastly, Inc.
1172.217.114.4Google · CDNUnited States
AS15169Google LLC
1172.217.113.4Google · CDNUnited States
AS15169Google LLC
2012--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1674242B2B554A039B926F8C0BA8867DF70446927C56787ECECD2B174C8C7AF31B64709

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:SPb6zVBVRCQcCqgStyx2VWyA/uYFeKdFiRlrAVI5wcJYsxJ/iPnZoS:GABdlqg8yx2VWyA2YniRlmI5fVDaZoS

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:12245:Xehl4UagACDMAGaEiBEMUADoDSKShhqSGGZBoKjBRCcAhsDqTBGiQREwOgKICKIRJAIAATDFBbKRjcOdAABgmgHEChkCDPAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:8c593366dc99cc99
Difference Hash:fff3b2b2b2b2f3ef
Wavelet Hash:03031f1f1f1f071f
Color Hash:#d22d69

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data