Security Scan Report: t.co

Redirected to:
https://www.enfoquecrm.com/rgov/en/
Site favicon
Submitted: Sep 24, 2026, 2:53:39 PMCompleted: Sep 24, 2026, 2:54:33 PMpubliccompleted

This website contacted 5 IPs in 1 country across 5 domains to perform 12 HTTP transactions. The main domain is enfoquecrm.com and was registered 14 years ago.

Submitted URL: https://t.co/2lBQz7fseV

Effective URL:

https://www.enfoquecrm.com/rgov/en/
Redirected

Downloads:

The Cisco Umbrella rank of the primary domain is #1,176 of the top 1 million websitesTop 10K Site

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Fake Adobe Acrobat Reader update page served from enfoquecrm.com that pushes a packed Windows executable; corroborated by CRITICAL IDS alerts for PE EXE/DLL download. Malware distribution, not a legitimate update.

Risk Factors
Impersonation of Adobe Acrobat Reader on an unrelated domain (enfoquecrm.com)
CRITICAL IDS alert for PE EXE/DLL Windows executable download
MEDIUM IDS alert for packed executable download
Auto-download prompt designed to push a binary to the visitor
Cross-domain redirect from a URL shortener masking the final destination
Domain age information unavailable

Details

Page Title

Cloud Share

Scan Type

public

Domain Name Analysis

The domain 't.co' uses the Colombian country-code top-level domain (.co) without a subdomain. Count 1 characters in 't' with 0 vowels and 1 consonant. Word splitting yields one word: t. Expect one character per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://t.co/2lBQz7fseV

Page Load Overview

35.72s
Total Load Time
221 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:490 chars
Detector Agreement:50%

Website Classification

Primary Category

download file sharing76% confidence
Type: static
Method: ml+structural

All Detected Categories

download file sharing
76%
technology software
60%
documentation technical
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4172.66.0.227Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2184.94.212.121United States
AS22612Namecheap, Inc.
2142.251.20.95Google · CDNUnited States
AS15169Google LLC
2151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
2104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
125--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18EC1D825C72E942760238294BDB5A749112AC613E707CE5AF6BF243ADFC1D098C673CE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:njCFFqw39LIQvXx6p5OWtc0nSiE7d/QZ8bIKS56VadApe0CARWAhghR3fp4xUx0u:nj5efG5pc8TE7KZ8kdKaMDkpGUab2BP

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5862:uHCgCwQJhMBsAAAGARYlDiAB4UgAQOAgFsMIrACIxVoEfEYEAgQCYFcDCAhCDwCKEhMOMAmAADFgQRcIQgiB2IAAEAI8SpwA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe3e3e3a1000000
Perceptual Hash:e7a1d8de8388d49a
Difference Hash:86c6c64f4f6870a2
Wavelet Hash:ffe7e7e3a3301000
Color Hash:#783a62

Scan History

Scan history not available

Unable to load historical scan data