Security Scan Report: lalalapiano.com

Site favicon
Submitted: Sep 16, 2026, 7:47:29 AMCompleted: Sep 16, 2026, 7:49:41 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 90%

9
Risk Score

Compromised legitimate piano blog: multi-source threat intel flags the URL/domain as malware, and IDS shows critical EtherHiding exfiltration plus BSC testnet RPC connections. Avoid.

Risk Factors (5)
Multi-source threat-intel malware match on the primary URL
Primary domain reported as malware (clearfake)
Critical IDS EtherHiding exfiltration alerts (11 CRITICAL total)
Blockchain RPC connections to BSC testnet (EtherHiding / wallet-drainer pattern)
eval() dynamic code execution present
Domain age information unavailable

Details

Page Title

Bienvenue chez Caro Piano | Jouer du piano | lalalapiano

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'lalalapiano.com' is registered and has no subdomain. Count 11 characters in 'lalalapiano' split between 6 vowels and 5 consonants. It segments into three words: lala, la, piano. Expect four characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://lalalapiano.com

Page Load Overview

85.27s
Total Load Time
2.7 MB
Total Size

Language Analysis

Primary Language

馃嚝馃嚪French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:fr-FR
Text Length:6,799 chars
Detector Agreement:80%

Website Classification

Primary Category

education learning45% confidence
Type: spa
Method: ml+structural

All Detected Categories

education learning
45%
news/blog
35%
corporate
35%
blog personal website
26%

Detected Features

Search
Articles
Comments
OG: article
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
22192.0.77.37San Francisco, California, United States
AS2635Automattic, Inc
5192.0.77.2San Francisco, California, United States
AS2635Automattic, Inc
5192.0.76.3San Francisco, California, United States
AS2635Automattic, Inc
5213.186.33.40France
AS16276OVH SAS
5142.251.14.95Google 路 CDNUnited States
AS15169Google LLC
5104.20.23.134Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
53.33.155.121Aws 路 CLOUDUnited States
AS16509Amazon.com, Inc.
5104.20.24.117Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
551.77.64.70Germany
AS16276OVH SAS
5172.67.142.245Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
15227--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12662E67372EC09067B2393AE6291F36CC41E5067EB6DDB90F92B203897D4FE82166741

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:dyhCp/0CiG76Wx/lv6Z+dOccy6IhrfwqG2sVZ:dyhCpMQb/lHdNJ6Ih7w5Z

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:14880:kccmh6ABB4r80Y1EBJI4BIEglAABOACLUCELEQQGgYKGKC8ICNgBkwwClAEgJQxBFABVgAiA4CMcRAxDAwwE+bAfiShkLQg2

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:b9a0cfcfcfffff4e
Perceptual Hash:b94ecece31c60e31
Difference Hash:6b499a9292a2d290
Wavelet Hash:b9004b4b4b5b7b0e
Color Hash:#bf4a40

Other Hashes

Crop Resistant:6b499a9292a2d290

Scan History

Scan history not available

Unable to load historical scan data