Security Scan Report: mkt.terranza.online

Redirected to: blob:https://fundacaointerartive.org/9c35d618-110b-4c2a-987e-470ef91d68fe

Site favicon
Submitted: Jan 31, 2026, 3:26:57 PMCompleted: Jan 31, 2026, 3:28:15 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 10 HTTP transactions. The main domain is .

Submitted URL: https://mkt.terranza.online/capitalonelk.html

Effective URL: blob:https://fundacaointerartive.org/9c35d618-110b-4c2a-987e-470ef91d68feRedirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page mimicking CapitalOne; high risk – do not enter credentials.

Risk Factors
Disguised password fields (type=text with password placeholder)
Unicode evasion technique
Brand impersonation (CapitalOne) on a newly‑registered/unknown‑age domain
Login form collecting credentials
Domain not in Cisco Umbrella top 1M (unranked) and age unknown
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(63%)

Domain Information

The domain name 'mkt.terranza.online' uses the modern generic top-level domain (.online), featuring subdomain 'mkt'. The core label 'terranza' covers 8 characters with 3 vowels and 5 consonants. Word splitting yields two words: terran, za. The median word length lands at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mkt.terranza.online/capitalonelk.html

Page Load Overview

1.39s
Total Load Time
8
HTTP Requests
5
Domains
189 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,982 chars
Detector Agreement:67%

Website Classification

Primary Category

finance banking63% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
63%
documentation technical
47%
adult content
47%
social media network
43%
corporate business
43%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4151.101.130.137Germany
1104.126.37.137Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1104.21.1.230Germany
1108.167.164.168United States
AS19871Network Solutions, LLC
1104.126.37.144Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
85--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T147E34C36619304BAA9A385885BEB2B4A3E545847D0CAD13477ACB7D80FC38D5D4BE3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ZQlISjLbAqFbohxb1Ma39lGbocwruWNOTAHp:ZQlISjLbn4xKnb4p

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:144413:AUtZCDYShQAsASEIAupASxSJgkFQBVHCMwgsgxKoIAHlMABKblKx0CBUAZAAhAOTEgmFQAiARgK2shUwpCoBSABGEQSUAJIk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:77e7ffe7e7ffc6ff
Perceptual Hash:b327cc37239d8931
Difference Hash:cc0c104c4d082c00
Wavelet Hash:00c7c3c3c3e700ff
Color Hash:#d2ce79

Other Hashes

Crop Resistant:cc0c104c4d082c00

Scan History

Scan history not available

Unable to load historical scan data