Security Scan Report: www.uofmhealthsparrow.org

Submitted: Jan 23, 2026, 9:14:26 PMCompleted: Jan 23, 2026, 9:15:39 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 2 countries across 9 domains to perform 1 HTTP transaction. The main domain is uofmhealthsparrow.org and was registered NaN years ago.

Submitted URL: https://www.uofmhealthsparrow.org/

The Cisco Umbrella rank of the primary domain is #707,766 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Site impersonates University of Michigan health system; likely phishing.

Risk Factors
Brand impersonation: domain does not match claimed University of Michigan brand
Low Cisco Umbrella ranking for a claimed major brand
Unusual domain name mimicking a reputable health system
Domain age information unavailable

Details

Page Title

Home | UM Health-Sparrow

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

healthcare medical

(83%)

Domain Information

The domain name 'www.uofmhealthsparrow.org' uses the non-profit oriented generic top-level domain (.org) and includes subdomain 'www'. The second-level label 'uofmhealthsparrow' is 17 characters long holding six vowels versus eleven consonants. Word splitting yields 5 words: u, of, m, health, sparrow. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.uofmhealthsparrow.org/

Page Load Overview

2.91s
Total Load Time
56
HTTP Requests
10
Domains
844 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:6,694 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical83% confidence
Type: spa
Method: ml+structural

All Detected Categories

healthcare medical
83%
government public service
52%
adult content
35%

Detected Features

Search
OG: content

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7104.16.219.185United States
AS13335CLOUDFLARENET
7144.24.190.49Frankfurt am Main, Hesse, Germany
AS31898ORACLE-BMC-31898
720.121.104.90Washington, Virginia, United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
7146.75.121.230Frankfurt am Main, Hesse, Germany
AS54113FASTLY
7162.247.243.39United States
AS54113FASTLY
7172.217.20.142Germany
7104.16.220.185GermanyUnknown
7104.18.8.68United States
AS13335CLOUDFLARENET
568--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EE443B50A3D0207A485307F293A9A515F70FA05FF5054884F76C8BE9AF93CAA8D77A3D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:WHrdn2BA5AVXGwTOT0RwBCQP5tWdadqNN2jz:WLd2OoTOTE+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:268217:IEAiEMSLcRkwAADIyOImYUodoTjEIowgRSRA1hj4WLFQBTyoHwEcAJnwEBAAEtOkDAglABrMBIOASAGIB8O0rIAoEr0FDcaV

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:060c07070407ffff
Perceptual Hash:903bddb46ec526c8
Difference Hash:a838cfcd2d8eb0b8
Wavelet Hash:0e0c07070507ffff
Color Hash:#351f93

Scan History

Scan history not available

Unable to load historical scan data