Security Scan Report: trackion.netlify.app

Submitted: Sep 30, 2026, 1:54:51 AMCompleted: Sep 30, 2026, 1:56:00 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Fake USPS/UPS tracking page on an unranked Netlify subdomain, using official carrier branding and logos without authorization. No credential or payment form found, but brand impersonation makes it unsafe to trust or use.

Risk Factors (4)
Impersonation of a different entity's brand (USPS/UPS) on a domain that is not that brand's official domain
Unranked domain not present in Cisco Umbrella top 1M while claiming a major postal/logistics brand
Fake tracking-number collection form with action '#' on a brand-impersonating page
Dependency on a suspicious free-hosting domain (000webhostapp.com) as a page resource
Domain age information unavailable

Details

Page Title

UPS Tracking®

Scan Type

public

Domain Name Analysis

The domain 'trackion.netlify.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'trackion'. The second-level label 'netlify' is 7 characters long containing 2 vowels alongside five consonants. Tokenizing the label suggests three words: net, li, fy. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://trackion.netlify.app/

Page Load Overview

3.67s
Total Load Time
859 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:986 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service66% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
66%
technology software
28%
news media journalism
27%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1063.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
6104.16.40.28Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
62.23.244.111Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
623.222.81.40Akamai · CDNHamburg, Free and Hanseatic City of Hamburg, Germany
AS16625Akamai Technologies, Inc.
623.36.162.25Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
623.50.131.150Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
635.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
6104.16.41.28Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
623.36.162.17Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
62.17.100.138Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
6410--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19BE2D847ECD10526518350DEB5A2B7286AB7C003F30DDC50B5ED91ACAFE5F814EABA9C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:lSWGdVmktZvc21YGRcyCXfpHsP86malObvIhVVY/vh:ldGnmktZdsy0RHC86magbvGVVY/vh

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:31867:RaQiBoGEcrOIiVAGopNB8UQYEjmgWCESDCcUAwYgc7IpeiAlAkNhgQFBBxMIQqChQQRQL2hxwYpMBC4LAOFWAQMADGQmi+KJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:80dfe6e6e7e7ba83
Perceptual Hash:f65c5cf0704363c9
Difference Hash:30324e4e0c0c720e
Wavelet Hash:c0dfc2e6e7e78081
Color Hash:#3a7853

Other Hashes

Crop Resistant:30324e4e0c0c720e

Scan History

Scan history not available

Unable to load historical scan data