Scan report · about 2 months agoPublic

lighthearted-zabaione-c450ce.netlify.app

35.157.26.135AS16509 · US

Suspicious: the page presents itself as Google and asks the visitor for a password

Engine tags
Verdict

What happened

Step by step, from what the scanner recorded.
Load 0.7 s · 2 requests
01 · Visitor openslighthearted-zabaione-c450ce.netlify.app
02 · Page shown
Sign in - Google Accountsstyled as Google · high
03 · OutcomeCredential phishingA login page wearing a brand it does not own.

Dangerous — confirmed threat

Automated

It presents itself as Google while being hosted somewhere Google does not own. It asks you to enter a password. We found strong evidence that this site is malicious — for example a phishing page, a scam, or hostile code. Treat anything it asked for (passwords, card details, codes) as exposed.

What to do

Do not enter any information or download anything. If you already did, change those passwords now and contact your bank if payment details were involved. Block or report the link to your team.

This reflects the evidence found at the time of the scan. If you believe it is a mistake, you can escalate it for analyst review.

Findings

Strongest first
SupportingBrand impersonation detected
Google · high

The page presents itself as a known brand (brand keywords/branding detected).

Analyst noteHigh confidence: brand keywords AND a password field — classic credential phishing.

Infrastructure

IP
35.157.26.135AMAZON-02 - Amazon.com, Inc., US · AS16509US
TLS
CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US · expires Mar 19, 2027
Redirects
0 hops · / → /
10 malicious37 suspicious

Hashes & fingerprints

Page capture

Live

Title “Sign in - Google Accounts” · brand shown: Google (high)

Engines

9 · time to verdict

Page

HTTP
200 · Completed
Title
Sign in - Google Accounts
Load
0.70 s · 2 requests
Stack · 2HSTSNetlify