Security Scan Report: he-health.com

Redirected to: blob:https://lugabeer.ru/12a328c2-157a-4d66-9b37-9c244361753a

Submitted: Oct 3, 2025, 2:22:28 AMCompleted: Oct 3, 2025, 2:24:16 AMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 3 countries across 5 domains to perform 12 HTTP transactions. The main domain is .

Submitted URL: https://he-health.com/wp-admin/rdr-c/link.html

Effective URL: blob:https://lugabeer.ru/12a328c2-157a-4d66-9b37-9c244361753aRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Phishing site impersonating Capital One, confirmed scam; avoid all interaction.

Risk Factors
UNRANKED domain with low reputation
Brand impersonation on a suspicious domain
Credential harvesting forms
Disguised password fields (type='text' with password placeholders)
Unicode evasion in form fields
Multiple sensitive data collection forms
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Screenshot

Security scan screenshot of https://he-health.com/wp-admin/rdr-c/link.html

Page Load Overview

74.05s
Total Load Time
12
HTTP Requests
5
Domains
30 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,870 chars
Detector Agreement:100%

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1235.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
037.140.192.111Russia
AS197695Domain names registrar REG.RU, Ltd
0151.101.66.137San Francisco, California, United States
AS54113FASTLY
023.95.48.152Elk Grove Village, Illinois, United States
AS36352AS-COLOCROSSING
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a04:4e42:200::649UnknownUnknown
02a00:f940:2:2:1:1:0:61UnknownUnknown
02a04:4e42:400::649UnknownUnknown
02a05:d014:58f:6200::258UnknownUnknown
0151.101.194.137UnknownUnknown
1215--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF63433561E301BAA8B389D857EB2B463E849887D0C9D12477AC9BD84F838D5D47D3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:0Ql0WSjLNMFv9vteVCrXWtcLRlyA7q86mLTlyA7KWtm:0QlfSjLNAVVe5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:67514:B4EYLSDgCF4IQSqbAdUAQMAGQCWpRFWaARgypsRkweItYIFAI1kZABACalAogJSsyFOAAOZIdodCM1JAyiG4AMJVIgOqEIKA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fa4bde7c3ffcfff
Perceptual Hash:b38f8c27239d89b1
Difference Hash:e868704c4d2a2c00
Wavelet Hash:7f373c2c0424df00
Color Hash:#2d8633

Other Hashes

Crop Resistant:e868704c4d2a2c00

Scan History

Scan history not available

Unable to load historical scan data