Security Scan Report: seasoning.cloud.664628aa9.shop

Redirected to: https://login.cloud.664628aa9.shop/

Site favicon
Submitted: Jan 9, 2026, 1:00:04 PMCompleted: Jan 9, 2026, 1:02:09 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 11 domains to perform 2 HTTP transactions. The main domain is login.cloud.664628aa9.shop.

Submitted URL: https://seasoning.cloud.664628aa9.shop/zCywBENn

Effective URL: https://login.cloud.664628aa9.shop/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Confirmed phishing site impersonating Yahoo on a newly registered, unranked domain.

Risk Factors
Brand impersonation on untrusted domain
Newly registered domain collecting credentials
Login form with password field
Hidden password field
Unranked domain lacking reputation
Domain age information unavailable

Details

Page Title

Login - Sign in to Yahoo

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

adult content

(50%)

Domain Information

The domain 'seasoning.cloud.664628aa9.shop' uses the commerce-oriented generic top-level domain (.shop); it also runs on subdomain 'seasoning.cloud'. Its registrable label '664628aa9' stretches across 9 characters split between 2 vowels and 0 consonants, plus seven digits. It segments into 4 words: 664628, a, a, 9. Average segment length settles at 1 character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://seasoning.cloud.664628aa9.shop/zCywBENn

Page Load Overview

16.91s
Total Load Time
3
HTTP Requests
3
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:4,787 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content50% confidence
Type: webapp
Method: ml+structural

All Detected Categories

adult content
50%
social media network
45%
finance banking
38%
news media journalism
37%
healthcare medical
35%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3104.18.95.41United States
AS13335CLOUDFLARENET
0144.172.114.111Ogden, Utah, United States
AS14956ROUTERHOSTING
0216.239.32.36United States
0188.125.72.139United StatesUnknown
0142.251.208.8United StatesUnknown
03.174.46.108United StatesUnknown
087.248.119.252United StatesUnknown
015.197.167.90United States
AS16509AMAZON-02
38--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12C222F1701B52C263820A453DB9BBA308E260D0BFA05BC6E74DD4DC5B7898E7238376F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:B84PqMZPbqMUz1Up80ezdXL6i8bXAti24xez/ehu9m6yx4pUoHqFezdXL6iHbXAf:mQ4ndlyGd0yeqVK1ye

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:10241:gBAACVIhgJgkiaSQEgBWMIUAnMshmgxAaiGgiAMmVCBgCBogGQpwEkSTDFAAIBpQQKCH4WhCIYElIBOgQoAhWbNJeSQBiEBG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7efaf2f0fafafeff
Perceptual Hash:ed6d92926d6d1292
Difference Hash:8202021202020000
Wavelet Hash:70f0f0f000000e0e
Color Hash:#4099bf

Other Hashes

Crop Resistant:8202021202020000

Scan History

Scan history not available

Unable to load historical scan data