Summary
This website contacted 10 IPs in 2 countries across 10 domains to perform 118 HTTP transactions. The main domain is ip2location.com and was registered NaN years ago.
Submitted URL: https://tools.ip2location.com
Effective URL: https://www.ip2location.com/free/widgetsRedirected
The Cisco Umbrella rank of the primary domain is #170,073 of the top 1 million websites
AI Security Verdict
Confirmed Scam
Confidence: 96%
Site contains multiple Indicators of Compromise, hidden password field and credential‑harvesting forms – confirmed phishing scam.
Risk Factors
Details
Page Title
Free Multilingual Geolocation Widgets | IP2Location
Scan Type
public
Language
English
Category
corporate
(35%)Domain Information
Within the commercial generic top-level domain (.com), 'tools.ip2location.com' is registered with subdomain 'tools'. Its registrable label 'ip2location' stretches across 11 characters split between five vowels and 5 consonants; bonus characters include one digit. Tokenizing the label suggests 3 words: ip, 2, location. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.
Screenshot

Page Load Overview
Language Analysis
Primary Language
Detection Details
Website Classification
Primary Category
All Detected Categories
Detected Features
Domain & IP Information
| Requests | IP Address | Location | AS Autonomous System |
|---|---|---|---|
| 19 | 52.222.236.94 | United States | AS16509Amazon.com, Inc. |
| 12 | 142.251.127.97 | United States | AS15169Google LLC |
| 12 | 216.58.206.66 | United States | AS15169Google LLC |
| 12 | 104.18.95.41 | United States | AS13335Cloudflare, Inc. |
| 12 | 142.250.186.67 | United States | AS15169Google LLC |
| 12 | 172.217.16.202 | United States | AS15169Google LLC |
| 12 | 185.111.111.157 | Frankfurt am Main, Hesse, Germany | AS212238Datacamp Limited |
| 12 | 104.17.24.14 | United States | AS13335Cloudflare, Inc. |
| 12 | 172.67.71.137 | United States | AS13335Cloudflare, Inc. |
| 12 | 104.26.3.214 | United States | AS13335Cloudflare, Inc. |
| 127 | 10 | - | - |
Detected Technologies11
Content Similarity HashesFor malware variant detection
TLSH (Trend Micro Locality Sensitive Hash)
Security-focusedSpecialized for malware detection and similarity analysis
ssdeep (Context Triggered Piecewise Hashing)
Context-awareDetects similar content even with modifications
sdhash (Similarity Digest Hashing)
High-precisionHigh-precision similarity detection for forensic analysis
These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.
Image Hashes
Perceptual Hashes
Other Hashes
Scan History
Scan history not available
Unable to load historical scan data