Security Scan Report: 1ah.lightning.force.com

Redirected to:
https://connectug.ah.org/logon/LogonPoint/tmindex.html
Site favicon
Submitted: May 23, 2026, 12:53:40 AMCompleted: May 23, 2026, 12:55:20 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 4 domains to perform 39 HTTP transactions. The main domain is connectug.ah.org and was registered NaN years ago.

Submitted URL: https://1ah.lightning.force.com

Effective URL: https://connectug.ah.org/logon/LogonPoint/tmindex.htmlRedirected

The Cisco Umbrella rank of the primary domain is #1,491 of the top 1 million websitesTop 10K Site

AI Security Verdict

Low Risk

Confidence: 92%

2
Risk Score

The site is old, well‑ranked, and shows no malicious indicators; low risk despite redirects and obfuscated JavaScript.

Risk Factors
Six consecutive redirects before reaching final URL
JavaScript obfuscation score marked CRITICAL (high entropy/minification)
Safety Factors
Well‑established domain with long registration history
High Cisco Umbrella ranking (top 10K)
No malicious Indicators of Compromise detected
No JavaScript malware patterns matched
Cross‑origin form identified as legitimate SSO, not credential exfiltration
Domain age information unavailable

Details

Page Title

NetScaler AAA

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

technology software

(86%)

Domain Information

Domain '1ah.lightning.force.com' uses the commercial generic top-level domain (.com); it also runs on subdomain '1ah.lightning'. The core label 'force' covers 5 characters containing two vowels alongside three consonants. Splitting it apart reveals one word: force. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://1ah.lightning.force.com

Page Load Overview

31.69s
Total Load Time
29
HTTP Requests
4
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
Text Length:4,398 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software86% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
86%
government public service
62%
documentation technical
53%
blog personal website
34%
cryptocurrency blockchain
32%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11206.210.160.241Bakersfield, California, United States
AS23431-Reserved AS
9206.210.162.214Bakersfield, California, United States
AS23431-Reserved AS
935.158.127.53Frankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
293--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B543C661A0F6253701D385CAB462AB1BBFE2D74BDA07960076FC46D64FD7E8ACC43129

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:Zzzer3oStC+iVFIY8Kiz6JmMvjcTq8gtu2l336fuNfBJb0f71okf8xKbPie1AU:hKTb4jNJNvjce8au2l339DifDfAe1AU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:59824:1hAYBEAQYgZpUMogKqKBiFAEMxpC8gAhVEoMEomsFwGsC0AABCMEhgYw4LQUkJEQCIcVTGCE8gkhMAqAJEQE1qCUQVTEA5Gh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data