Security Scan Report: agrointel.ro

Site favicon
Submitted: May 8, 2026, 2:09:44 AMCompleted: May 8, 2026, 2:11:20 AMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 9 domains to perform 37 HTTP transactions. The main domain is agrointel.ro and was registered NaN years ago.

Submitted URL: https://agrointel.ro

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

The site shows strong malware indicators (C2 beacon, data exfiltration alerts) despite being old and self‑branded; treat as high‑risk malware distribution and avoid interaction.

Risk Factors
CRITICAL IDS alerts (malware C2 beacon)
Large HTTP POST exfiltration alerts
High JavaScript obfuscation with eval() usage
Cross‑origin credential form to external mailing service
Unranked domain (no Cisco Umbrella reputation)
Domain age information unavailable

Details

Page Title

Agrointeligența

Scan Type

public

Language

🇷🇴

RO

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'agrointel.ro' uses the Romanian country-code top-level domain (.ro) and has no subdomain. The registrable portion 'agrointel' spans 9 characters holding four vowels versus five consonants. Splitting it apart reveals 3 words: a, gro, intel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://agrointel.ro

Page Load Overview

3.65s
Total Load Time
130
HTTP Requests
16
Domains
2.3 MB
Total Size

Language Analysis

Primary Language

🇷🇴Romanian
Code: ro
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:ro
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:ro
Text Length:74,223 chars
Detector Agreement:50%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
18188.114.97.3United States
AS13335Cloudflare, Inc.
14142.251.20.157United States
AS15169Google LLC
1423.197.134.136Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
14104.21.53.171United States
AS13335Cloudflare, Inc.
14104.16.79.73United States
AS13335Cloudflare, Inc.
14142.251.20.97United States
AS15169Google LLC
14128.140.224.235Romania
AS5606GTS Telecom SRL
1423.67.139.70Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
14195.181.170.19Frankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1309--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF6392B29750B26B8333A6C5D6281E1DA143650FCB834899F38EC3EA9FC1CF35E56446

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:FNO6hFvLE1WAyPfv+GcZdYz3nHdbzCLnQXSY414Yh19B:FNO6hFvLCWJfGGcZdYz3HdbzCLQX/41B

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:71898:BoKgUIOYLDQCIINscABdCKDKCurQZjoEFJAAOi0kUAkGT8ITYCQZIEHBHJQLUsIDFKgCMAngIAwACQWOINloBAAEmeAkKhBC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data