Security Scan Report: sp829725.sitebeat.crazydomains.com

Submitted: Nov 20, 2025, 3:32:28 PMCompleted: Nov 20, 2025, 3:34:43 PMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 2 countries across 4 domains to perform 32 HTTP transactions. The main domain is sp829725.sitebeat.crazydomains.com.

Submitted URL: https://sp829725.sitebeat.crazydomains.com/

The Cisco Umbrella rank of the primary domain is #481,468 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page impersonating Microsoft on a low‑ranked, likely new domain – high risk.

Risk Factors
Brand impersonation of Microsoft on a low‑reputation domain
Low Cisco Umbrella ranking for a site claiming a major brand
Credential‑harvesting form on a newly registered domain
Use of a subdomain (sitebeat.crazydomains.com) typical of disposable hosting
Domain age information unavailable

Details

Page Title

MLCR0-S0FT

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

Within the commercial generic top-level domain (.com), 'sp829725.sitebeat.crazydomains.com' is registered and includes subdomain 'sp829725.sitebeat'. The core label 'crazydomains' covers 12 characters with 4 vowels and eight consonants. Segmentation suggests two words: crazy, domains. The median word length lands at 6 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sp829725.sitebeat.crazydomains.com/

Page Load Overview

5.02s
Total Load Time
32
HTTP Requests
4
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,024 chars
Detector Agreement:50%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
27103.67.235.120Perth, Western Australia, Australia
AS38719Dreamscape Networks Limited
2104.26.7.16United States
AS13335CLOUDFLARENET
234.117.140.48Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
22606:4700:10::ac42:a073United States
AS13335CLOUDFLARENET
22606:4700:20::ac43:463cUnited States
AS13335CLOUDFLARENET
2104.20.37.91United States
AS13335CLOUDFLARENET
2172.67.70.60United States
AS13335CLOUDFLARENET
22606:4700:20::681a:610United States
AS13335CLOUDFLARENET
22606:4700:10::6814:255bUnited States
AS13335CLOUDFLARENET
22606:4700:20::681a:710United States
AS13335CLOUDFLARENET
3212--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DC7351A1C8174412B28B6DDE37CF7A19A11D534BA841DA217BFC279C2FDDE7A026270D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:f7R6t47j7l7W7V7zpv4jJXZq5vl7kPd35KZPxHwLxnJapfl7kPdHp6JronxijNxv:VCxHx4qNsNhRqqiL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:77284:ACUsAmHwmAmDAQ9EkAAEWGSAX4ZDMkBCwcYxOPEANIdwOAjxDBIIrSJKCaEASAQwIpDGP3jYASRgUQTO4LEiBgESzQAEGKDI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefe7e7e7effff07
Perceptual Hash:80d53fff00e800ff
Difference Hash:00008080800008ec
Wavelet Hash:020242427efefe06
Color Hash:#2d45d2

Other Hashes

Crop Resistant:00008080800008ec

Scan History

Scan history not available

Unable to load historical scan data