Security Scan Report: symphonious-longma-3e8d6c.netlify.app

Submitted: Sep 22, 2026, 1:45:31 PMCompleted: Sep 22, 2026, 1:46:13 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Roblox-branded credential phishing page on netlify.app promising 'Free Robux', instructing users to disable 2FA and capturing login data sent to a Telegram exfiltration endpoint. Do not interact.

Risk Factors (5)
Brand impersonation of Roblox on an unrelated, unranked hosting subdomain
Credential (password) harvesting form on a free instant-publish host
Explicit instruction to disable two-factor authentication before 'receiving' rewards
Cross-origin exfiltration of captured data to a Telegram bot endpoint
Free Robux giveaway lure — classic reward scam bait
Domain age information unavailable

Details

Page Title

Roblox - Free Robux

Scan Type

public

Domain Name Analysis

The domain name 'symphonious-longma-3e8d6c.netlify.app' uses the application-focused generic top-level domain (.app) with subdomain 'symphonious-longma-3e8d6c'. Its registrable label 'netlify' stretches across 7 characters with 2 vowels and five consonants. Breaking it apart gives 3 words: net, li, fy. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://symphonious-longma-3e8d6c.netlify.app/

Page Load Overview

0.37s
Total Load Time
8 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:594 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain57% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

cryptocurrency blockchain
57%
social media network
48%
finance banking
46%
technology software
45%
adult content
40%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
135.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
163.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
22--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T147D2E5B2261320319B5F95F372A50B4F79749003FA07593A3EFC1548DFC8CE196A7A96

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:WstVZounkvrYqXmfqJvABMMVyKfg3W6aeEa8Bmi101HaP8gNMbq/rh5maKP9HTqE:WstVyukTYqXmfqJvABMMVyAg3W6aeEar

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:30292:S25UB5BAyYwkhhSOQCWMCS8aQmgUDRTUYIAQAOuIIUaFBpKCCADNAZjLqBJIRCgGMJJ9pSAqKJSWCAwiiNIIYVxpDAPADJGN

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8198181c1c1b1b03
Perceptual Hash:997a268833af6e23
Difference Hash:093232b1b9b2b2aa
Wavelet Hash:81d81c1d1f1f1b1f
Color Hash:#bf7740

Other Hashes

Crop Resistant:093232b1b9b2b2aa

Scan History

Scan history not available

Unable to load historical scan data