Security Scan Report: benlkctra.web.app

Redirected to:
https://killbots.hys.cz/mrida/
Submitted: Sep 27, 2026, 4:55:03 PMCompleted: Sep 27, 2026, 4:55:38 PMpubliccompleted

This website contacted 4 IPs in 2 countries across 4 domains to perform 6 HTTP transactions. The main domain is killbots.hys.cz and was registered 18 years ago.

Submitted URL: https://benlkctra.web.app/

Effective URL:

https://killbots.hys.cz/mrida/
Redirected

AI Security Verdict

Low Risk

Confidence: 55%

3
Risk Score

Near-empty 'waiting' page reached via a cross-domain hop; no forms, no brand impersonation, and no Indicators of Compromise. Nothing malicious is evidenced, but content is unsubstantiated — treat with caution.

Risk Factors (2)
Scanner-vs-client content mismatch indicates the page serves different content to automated clients
Multi-domain hop onto an unranked host (killbots.hys.cz) whose age and reputation are unknown
Safety Factors (5)
No credential, login, or payment form present
No brand impersonation — page displays no other entity's brand or styling
No threat-intel matches against the page or its loaded resources
No YARA malware patterns, no network IDS alerts, no credential exfiltration
Loaded resources limited to Google Fonts and the target domain itself
Domain age information unavailable

Details

Page Title

waiting

Scan Type

public

Domain Name Analysis

Domain 'benlkctra.web.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'benlkctra'. Its registrable label 'web' stretches across 3 characters holding 1 vowel versus two consonants. Word splitting yields 1 word: web. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://benlkctra.web.app/

Page Load Overview

0.77s
Total Load Time
22 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Text Length:283 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism56% confidence
Type: static
Method: ml+structural

All Detected Categories

news media journalism
56%
government public service
54%
healthcare medical
53%
adult content
52%
cryptocurrency blockchain
49%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
1185.102.21.3Czech Republic
AS8648dogado GmbH
1142.251.20.95Google · CDNUnited States
AS15169Google LLC
1142.251.13.94Google · CDNUnited States
AS15169Google LLC
64--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16DE061C368E2544D1560C3210DD2F1485FC545D752859900FDCDD29A0F5576BCAF395C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:h4hqIY7Y03RfAbpli7vkO1EdxXmaXtVU0I7OFWmmHYLedNdKKqz:hRJOy7P4xZtVUiQxHFFKj

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:a1aa876ff1febcecdafa820daa9a31ec

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:007fffffffffff00
Perceptual Hash:a900290069fe7dff
Difference Hash:92c0120000120012
Wavelet Hash:003fccccf0f0ff00
Color Hash:#93861f

Other Hashes

Crop Resistant:92c0120000120012

Scan History

Scan history not available

Unable to load historical scan data