Security Scan Report: promoweb.biz.id

Redirected to: https://promoweb.biz.id/wp-login.php?redirect_to=https%3A%2F%2Fpromoweb.biz.id%2Fwp-admin%2F&reauth=1

Submitted: Oct 20, 2025, 9:21:36 PMCompleted: Oct 20, 2025, 9:22:07 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 14 HTTP transactions. The main domain is promoweb.biz.id and was registered NaN years ago.

Submitted URL: https://promoweb.biz.id/wp-admin/

Effective URL: https://promoweb.biz.id/wp-login.php?redirect_to=https%3A%2F%2Fpromoweb.biz.id%2Fwp-admin%2F&reauth=1Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam on a brand-new compromised WordPress site.

Risk Factors
Brand new domain (<7 days) hosting a login form
Password field without accompanying username field
Compromised WordPress site indicators (wp-admin path)
Credential harvesting form
Absence of username field increases harvesting risk
Domain age information unavailable

Details

Page Title

Log Masuk ‹ — WordPress

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

technology software

(27%)

Domain Information

Domain 'promoweb.biz.id' uses the Indonesian country-code top-level domain (.biz.id) without a subdomain. Its registrable label 'promoweb' stretches across 8 characters holding three vowels versus 5 consonants. Segmentation suggests two words: promo, web. Median word length is 4 characters. 'promo' most strongly signals French. It also appears in English and Indonesian contexts.

Screenshot

Security scan screenshot of https://promoweb.biz.id/wp-admin/

Page Load Overview

15.61s
Total Load Time
14
HTTP Requests
1
Domains
400 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:200 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software27% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14198.251.83.217Staten Island, New York, United States
AS53667PONYNET
141--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17902E7636C1D4D2B81025BD534EDB24875BFD432F316CC4AB3BB46142B66EDC5DA360A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:4xcZSDIYKbrFtqPgkhxgcWLk8odX5hxgcUjDuhxgc3hJUb:4iZS0YKbrFtqPgEALk8odXLqjDO5hJUb

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8744:MAqJAaSTYDKBwCCQBgOjQDsgkMQIApWBASZXJICE2ZCBkAAQgAuAcmdSIgDyRRgCgULAkGUzLGEUagcgAsFkAIddoaUSBoNy

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7dbf7efffffff
Perceptual Hash:e626333366cccc99
Difference Hash:0808302448000000
Wavelet Hash:e7e7fff700103030
Color Hash:#bfae40

Other Hashes

Crop Resistant:0808302448000000

Scan History

Scan history not available

Unable to load historical scan data