Security Scan Report: sap1.8vdjkloihn4713.workers.dev

Redirected to:
https://sap1.8vdjkloihn4713.workers.dev/
Site favicon
Submitted: Aug 16, 2026, 3:50:08 PMCompleted: Aug 16, 2026, 3:51:28 PMpubliccompleted

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 1 HTTP transaction. The main domain is sap1.8vdjkloihn4713.workers.dev and was registered 7 years ago.

Submitted URL: http://sap1.8vdjkloihn4713.workers.dev/

Effective URL: https://sap1.8vdjkloihn4713.workers.dev/Redirected

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

The site impersonates the Ariba brand without collecting credentials, but strong obfuscation and IDS alerts raise high risk.

Risk Factors
Brand impersonation on unrelated hosting subdomain
High‑severity IDS alerts (ET WEB_CLIENT Hex Obfuscation)
Critically obfuscated JavaScript
Domain age information unavailable

Details

Page Title

Ariba Network Supplier

Scan Type

public

Language

🇺🇸

English

(59% confidence)

Category

corporate business

(71%)

Domain Information

The domain name 'sap1.8vdjkloihn4713.workers.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'sap1.8vdjkloihn4713'. The second-level label 'workers' is 7 characters long holding two vowels versus five consonants. Splitting it apart reveals 1 word: workers. The median word length lands at seven characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://sap1.8vdjkloihn4713.workers.dev/

Page Load Overview

11.98s
Total Load Time
53
HTTP Requests
5
Domains
902 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:59%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:59%
Script Type:Latin
Text Length:2,004 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate business71% confidence
Type: spa
Method: ml+structural

All Detected Categories

corporate business
71%
technology software
66%
government public service
53%
education learning
46%
social media network
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13142.251.14.95Google · CDNUnited States
AS15169Google LLC
10188.114.96.3Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1034.89.228.119Google · CDNFrankfurt am Main, Hesse, Germany
AS396982Google LLC
10130.214.229.154Frankfurt am Main, Hesse, Germany
AS35039SAP SE
1034.171.180.175Google · CDNCouncil Bluffs, Iowa, United States
AS396982Google LLC
535--

Page Statistics

53
Requests
5
Unique Domains
1.9 MB
Total Size

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A9B3873DA722C89E5D73AA7FFCA45B24C044DF57DCC4A6C8182D81862FF157A71206AB

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:F9JsHZnS4W0RATllMzZlXwrM52nhuSMcqU3MRsOYPMZ7bilVUUvzxK49eJW/j5/W:FBho1xc9H2oeYi1NukZ9wUYmE1i

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:108637:GUJoEgoAMFIIE6MMNA1BalSMwQCOtThcICIQBmFx0EAgkfsIiBAxgoRFQ0AQRhTTgcERCRGw5DfIwCQkgGEkCCJmGyBORuWo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00f1f1b1ffffffff
Perceptual Hash:ec6c3113173f3711
Difference Hash:8783e767e2383240
Wavelet Hash:007170307e14cccc
Color Hash:#b387c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data