Security Scan Report: marvel-updated.netlify.app

Site favicon
Submitted: Sep 17, 2026, 2:50:04 PMCompleted: Sep 17, 2026, 2:50:34 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Marvel-branded '$MCU' token presale on an unranked netlify.app subdomain soliciting ETH/USDT — brand impersonation plus investment/crypto scam pattern. Avoid.

Risk Factors
Impersonation of the Marvel brand to promote and sell a token
Investment/crypto presale soliciting ETH and USDT with no registered business entity
Unranked, instantly-publishable netlify.app tenant with unknown age
Generic team claim ('5 people with in-depth IT knowledge') with no verifiable identities or audit
Third-party RPC endpoint flagged in threat-intel feeds as a known attacker (single-source, unverified)
Domain age information unavailable

Details

Page Title

Marvel Coin Universe

Scan Type

public

Domain Name Analysis

The domain name 'marvel-updated.netlify.app' uses the application-focused generic top-level domain (.app) with subdomain 'marvel-updated'. The registrable portion 'netlify' spans 7 characters containing 2 vowels alongside five consonants. Word splitting yields three words: net, li, fy. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://marvel-updated.netlify.app/

Page Load Overview

9.99s
Total Load Time
6.9 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:5,947 chars
Detector Agreement:80%

Website Classification

Primary Category

entertainment media64% confidence
Type: static
Method: ml+structural

All Detected Categories

entertainment media
64%
finance banking
60%
adult content
54%
cryptocurrency blockchain
40%
social media network
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1135.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
4104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.26.13.42Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
463.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
4104.26.12.42Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.251.13.95Google · CDNUnited States
AS15169Google LLC
4104.18.29.72Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4104.18.28.72Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5512--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T100319922C010DC1F5172431FB671F3CC4085297B965C5E8078EFDB9A2B96B522D9BA4A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TxcTGhO0aeC/hCEpXxS2Q4up8o50xs6JOMBbOWWFu:T2TGEBZ9JxS2QeKMi0

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1760:AABAUAAQEAAAAAEAQAAABAAAAkMCIAAASCAAEAEgAEAACBQAgIAGAAAAIACBABACRAQAAAAAQQAAgKAAICAAAAADAgAAAAgA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff6444b7ff710000
Perceptual Hash:a2b51de6bcb56130
Difference Hash:86cccdadadcdad33
Wavelet Hash:ff0065f7fff10000
Color Hash:#761f93

Scan History

Scan history not available

Unable to load historical scan data