Security Scan Report: earn-rewards.cu.ma

Submitted: Sep 28, 2026, 4:16:52 PMCompleted: Sep 28, 2026, 4:17:27 PMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is earn-rewards.cu.ma and was registered 11 years ago.

Submitted URL: https://earn-rewards.cu.ma/?2FxkrmSoM=

The Cisco Umbrella rank of the primary domain is #949,047 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 62%

5
Risk Score

Deceptive 'human verification' gateway on a free cu.ma subdomain that funnels visitors to dating/adult offers. No forms or credential harvesting, but the fake captcha and mismatched hostname make it untrustworthy.

Risk Factors (3)
Deceptive human-verification / click-gate pattern used to push visitors into third-party dating (adult) offers
Misleading subdomain naming ('earn-rewards') unrelated to the advertised dating service
Unranked free subdomain (Cisco Umbrella #949,047) hosting a 'verification' interstitial with no legitimate site content
Safety Factors (4)
No credential, password, payment, or email fields on the page (0 forms total)
No Indicators of Compromise, no YARA/JavaScript malware patterns, no known kit roster match
No cross-origin credential exfiltration; all scripts same-origin
No Google Safe Browsing or phishing/malware IDS alerts (only an informational ZeroSSL certificate note)
Domain age information unavailable

Details

Page Title

Human Verification

Scan Type

public

Domain Name Analysis

The domain name 'earn-rewards.cu.ma' uses the Moroccan country-code top-level domain (.ma); it also runs on subdomain 'earn-rewards'. The registrable portion 'cu' spans 2 characters holding 1 vowel versus 1 consonant. Segmentation suggests one word: cu. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://earn-rewards.cu.ma/?2FxkrmSoM=

Page Load Overview

0.66s
Total Load Time
4 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:488 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content40% confidence
Type: static
Method: ml+structural

All Detected Categories

adult content
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
269.164.250.130United States
AS26666Interserver, Inc
21--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B702739766B30811365B94B52BE79B5B37948443900ED5383FCC634C8FC69E8DA63B9C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:Oa5i61p77O8jBPyfJebOrZcWmNZximZu1+9FH5K3z999DikSYiniqBn:661p7nJIm7EW8j999NSYiniqBn

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8421:ICDuIQBkkztrlMwpMoAiYsAkWRCAaK1HpIQ1XI1MGFNKE0AEMmQExkFENIUqRBhFEgQAzMCAEUFAxEMIyCYF0iyJF0QEQUaQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:58786059011f1f01
Perceptual Hash:88e0668c669ddb37
Difference Hash:b59191b1d5b3b1cd
Wavelet Hash:71797179531f0703
Color Hash:#57ac53

Other Hashes

Crop Resistant:b59191b1d4b2b0cc

Scan History

Scan history not available

Unable to load historical scan data