Security Scan Report: roaring-puffpuff-410de4.netlify.app

Submitted: Sep 16, 2026, 1:45:04 PMCompleted: Sep 16, 2026, 1:45:25 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake 'official Roblox' Robux store on a throwaway Netlify subdomain using Roblox branding, a 90% discount bait and real payment methods; flagged for social engineering.

Risk Factors
Impersonation of the Roblox brand as the 'official' Roblox recharge site
Unauthorized use of '© Roblox Corporation' copyright notice
Deceptive 90% discount / free bonus bait to drive payment
Hosted on an anonymous throwaway Netlify subdomain (roaring-puffpuff-410de4) of unknown age
Google Safe Browsing Social Engineering detection
Domain age information unavailable

Details

Page Title

Centro de Recarga Roblox

Scan Type

public

Domain Name Analysis

The domain 'roaring-puffpuff-410de4.netlify.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'roaring-puffpuff-410de4'. The second-level label 'netlify' is 7 characters long with 2 vowels and 5 consonants. It segments into three words: net, li, fy. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://roaring-puffpuff-410de4.netlify.app/

Page Load Overview

1.04s
Total Load Time
1.6 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:pt
Text Length:892 chars
Detector Agreement:50%

Website Classification

Primary Category

corporate business26% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

corporate business
26%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2104.21.47.10Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.67.68.221Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2157.240.0.6Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
263.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
234.143.77.2Google · CDNUnited States
AS396982Google LLC
235.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
2104.26.10.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.67.169.174Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.26.13.205Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2157.240.0.35Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
2010--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T153C3D92811F605262C23A0B9BBEE766C6635D08BDD0ECD65BEDC23048F946F29D5B35C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:z0h+C3yuqEyVI2JjAHzDLMq7qJqtZaKtAgvzJRL4sgt:HC3yuqE92JjAvfbvlxs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:121887:fWJAWAcxNkoAh3RMRYgUFAFlghAqEOBAjkKvU6hwQgHIhAEDUkAmDjhCEhCzEACAFBTvH0inAZ7ECJCKQGCaPEjJiooWIChC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:000000ffffffffff
Perceptual Hash:b8024fb0cf96e996
Difference Hash:0101052096163032
Wavelet Hash:000000ffc7c3dffb
Color Hash:#bf4a40

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data