Security Scan Report: afdah.me

Redirected to: http://ww38.afdah.me/

Submitted: Dec 8, 2025, 7:33:03 AMCompleted: Dec 8, 2025, 7:35:01 AMpubliccompleted
Loading additional data...

Summary

This website contacted 38 IPs in 6 countries across 11 domains to perform 29 HTTP transactions. The main domain is ww38.afdah.me and was registered NaN years ago.

Submitted URL: https://afdah.me/

Effective URL: http://ww38.afdah.me/Redirected

The Cisco Umbrella rank of the primary domain is #842,519 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Site shows multiple malicious indicators and redirect abuse; treat as high‑risk.

Risk Factors
Malicious Indicators of Compromise match (suspicious IP)
Circular redirect loop
Low domain reputation ranking
Newly registered domain (< 1 year)
Domain appears to be parked/for sale
Domain age information unavailable

Details

Page Title

afdah.me

Scan Type

public

Language

🇩🇪

German

(42% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'afdah.me' on the Montenegrin country-code top-level domain (.me) and has no subdomain. The registrable portion 'afdah' spans 5 characters with two vowels and three consonants. Segmentation suggests two words: af, dah. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://afdah.me/

Page Load Overview

10.96s
Total Load Time
29
HTTP Requests
11
Domains
92 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:42%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:42%
Script Type:Latin
HTML Lang Attribute:en
Text Length:33 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as de

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2913.35.58.81United States
AS16509AMAZON-02
0188.114.96.3United States
AS13335CLOUDFLARENET
0188.114.97.3United States
AS13335CLOUDFLARENET
0199.191.50.135British Virgin Islands
AS40034CONFLUENCE-NETWORK-INC
013.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
013.107.213.45United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
087.248.119.251United Kingdom
AS203220Yahoo-UK Limited
034.251.101.162Dublin, Leinster, Ireland
AS16509AMAZON-02
0103.224.212.216Australia
AS133618Trellian Pty. Limited
03.248.162.96Dublin, Leinster, Ireland
AS16509AMAZON-02
2938--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11862B8436BE31519F11BC0A98F9AA70532289247D50FCD68BAEC77A8DF4C1D421A3BDC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:SR8pKfsTxcYoHSiF8zA5GYJEOJdt+TefwTyU0llYIOBYoHsfOBro2Tc/U6nSoj:SexcYoHSiFPnoTYwTcOBYoHsfO2/t

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:15419:AkDArlEE1MsYSFgEIEUQiKEBEjZqIgEABIVhcAcICSwLmgPNAYITobBRAUkTQkAChcQBUhMwEiWQlFyjComHORiwAECaEABR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff42e7c300000000
Perceptual Hash:b4a4cb8a8a9bbab1
Difference Hash:71969696b2b2b292
Wavelet Hash:ff62ffff52180000
Color Hash:#70862d

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data