Security Scan Report: grabber.cy

Submitted: Mar 16, 2026, 2:10:43 PMCompleted: Mar 16, 2026, 2:11:57 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 5 domains to perform 12 HTTP transactions. The main domain is grabber.cy.

Submitted URL: https://grabber.cy/

AI Security Verdict

High Risk

Confidence: 95%

8
Risk Score

Site hosts a known infostealer and contains multiple malicious Indicators of Compromise; avoid and report.

Risk Factors
Primary domain flagged as malicious (tokgrabber infostealer)
Malicious URL path /tokstealerr
External link to another malicious domain (upsqupdate.info)
Brand impersonation on an unranked domain
Unranked domain claiming professional security tool
Domain age information unavailable

Details

Page Title

TOK Grabber - Professional C++ Infostealer

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(69%)

Domain Information

Within the Cypriot country-code top-level domain (.cy), 'grabber.cy' is registered. The second-level label 'grabber' is 7 characters long split between 2 vowels and 5 consonants. Word splitting yields one word: grabber. Average segment length settles at 7 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://grabber.cy/

Page Load Overview

1.06s
Total Load Time
11
HTTP Requests
5
Domains
275 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,097 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software69% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
69%
cryptocurrency blockchain
40%
documentation technical
30%
cryptocurrency
30%
finance banking
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3104.26.3.143United States
288.99.145.13Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
2142.250.186.74France
2142.251.141.99Unknown
287.106.219.87France
AS8560IONOS SE
115--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FD43C72867A1052E3C4391F9D7D6A729B73EE1C3ED1FCA6DB69D41106FC35AA8C93600

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:53N+h0a+WbQkvy1j1iQ6TBdgDwB2g7uw0UdHJjBN9W7XzKa:Ch0yvy1Ji5/gDwtq8ba

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:58035:GBhIBBOKAeihAAAYAUAxYZr5h6BCLhhIKEBiVpZVABAkJAgMJSS4wEQRSg4YyYBwFQ1CpgEBABkgkAhoBGPZAgFAsIKADAIk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:017e3c181810407c
Perceptual Hash:8a9fb32c2c393ccc
Difference Hash:33e4e13bb5358d8d
Wavelet Hash:017f3d1919015b7f
Color Hash:#2d6fd2

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data