Security Scan Report: cloverhealthsso.com

Submitted: Dec 13, 2025, 8:28:58 PMCompleted: Dec 13, 2025, 8:29:44 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 5 HTTP transactions. The main domain is cloverhealthsso.com and was registered NaN years ago.

Submitted URL: http://cloverhealthsso.com/index.php?passtoken=&redirect=/

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Site hosts malicious JavaScript and exhibits circular redirects; treat as confirmed scam.

Risk Factors
Critical malicious JavaScript patterns (stealer) present
Circular redirect indicating URL manipulation
Newly registered domain (<90 days)
Unranked domain with low reputation
Site unreachable (ERR_TIMED_OUT) suggesting possible server abuse
Domain age information unavailable

Details

Page Title

cloverhealthsso.com

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(84%)

Domain Information

The domain name 'cloverhealthsso.com' uses the commercial generic top-level domain (.com) with no subdomain. The registrable portion 'cloverhealthsso' spans 15 characters split between 5 vowels and ten consonants. Segmentation suggests three words: clover, healths, so. The median word length lands at 6 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://cloverhealthsso.com/index.php?passtoken=&redirect=/

Page Load Overview

8.16s
Total Load Time
5
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:753 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software84% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
84%
healthcare medical
65%
documentation technical
63%
adult content
54%
government public service
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5149.50.97.174Warsaw, Mazovia, Poland
AS201814MEVSPACE sp. z o.o.
51--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E0048F77329A063986558498E05B830D9F21B143F506C9BC79BCBAD8BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:YfQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIsz52bMy8Old5:ThoC9JSqzzbs6o3Sj3gcrsd2eAb

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:187220:FRBgGgAAp5sCvVBDFQjhlDOVoQDhCFzAAKQETYwEMIDADzBkrKMQVoCTS2CoqIUARqbIIEQEQCkAQBQAAE43CXClhiqQ4iFn

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc7c7c3d3ffffff
Perceptual Hash:b1339acccc93b364
Difference Hash:0018181616000000
Wavelet Hash:fcdcc4c4c0f8f0f0
Color Hash:#783a51

Other Hashes

Crop Resistant:0018181616000000

Scan History

Scan history not available

Unable to load historical scan data