Security Scan Report: www.bluehorizons.travel

Submitted: Sep 17, 2026, 4:47:57 AMCompleted: Sep 17, 2026, 4:49:17 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

URL /daemonx on an established travel domain is flagged as a malware download and matches a critical IDS alert for an ELF executable download — a likely compromised site serving malware. Avoid.

Risk Factors
URL reported for hosting a malware download (URLhaus)
Critical network IDS alert for ELF executable download on the same path
Suspicious bare path (/daemonx) with no UI, text, or legitimate page content
Likely compromised legitimate domain being abused to distribute malware
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

The domain name 'www.bluehorizons.travel' uses the .travel top-level domain; it also runs on subdomain 'www'. The core label 'bluehorizons' covers 12 characters with 5 vowels and 7 consonants. Splitting it apart reveals 2 words: blue, horizons. Median word length comes out to six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.bluehorizons.travel/daemonx

Page Load Overview

25.29s
Total Load Time
12.5 MB
Total Size

Language Analysis

Primary Language

🇧🇩Bengali
Code: bn
Confidence:100%
Script:Unknown
Direction:ltr

Detection Details

Text Length:497,183 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical79% confidence
Type: static
Method: ml+structural

All Detected Categories

healthcare medical
79%
adult content
69%
finance banking
64%
documentation technical
61%
news media journalism
55%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
269.48.190.19Singapore
AS204800WHG Hosting Services Ltd
21--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T139F6B6F3A61A13CEADDA938F5DB5ACE60743FD102121C08D76A4369171D942E83DFAD2

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

98304:7E+64Cfu6A8hALAWgwfA0b9vlqUJFSb6n1PTVdJUYJPCi8:7E74C9j+x8YxO

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:16730362:YQCoSZwNTAwUgggFLCEhIOq65BHAlAECOpINhRFBOBwkGAAAHiCAgHJEgGIM0J0VeAAo2cg8BeJjUJIxGdDQ6AQxAFjSBkD0

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0100007f7f3f7f7f
Perceptual Hash:807f7fc580063f78
Difference Hash:7b0b7ded80e7e3e3
Wavelet Hash:000000377f3f7f7f
Color Hash:#e06c98

Other Hashes

Crop Resistant:7b0b7ded80e7e3e3

Scan History

Scan history not available

Unable to load historical scan data