Security Scan Report: bloomoose.de

Site favicon
Submitted: Sep 19, 2026, 4:47:26 AMCompleted: Sep 19, 2026, 4:48:06 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Photography blog with multiple malware indicators: primary domain and external resource flagged, critical IDS trojan alert, and blockchain RPC connection. Likely compromised.

Risk Factors
Primary domain reported in threat intelligence for malware
External resource qaz0.com loaded from the page is a known malware domain
Critical IDS alert indicating network trojan activity
Blockchain RPC connection to rpc.sepolia.ethpandaops.io
Domain age information unavailable

Details

Page Title

Bloomoose Pixelschubsing Blog

Scan Type

public

Domain Name Analysis

Within the German country-code top-level domain (.de), 'bloomoose.de' is registered. Its registrable label 'bloomoose' stretches across 9 characters holding five vowels versus 4 consonants. It segments into 3 words: b, loo, moose. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bloomoose.de

Page Load Overview

3.49s
Total Load Time
2.8 MB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:de
Text Length:7,774 chars
Detector Agreement:100%

Website Classification

Primary Category

forum community discussion81% confidence
Type: spa
Method: ml+structural

All Detected Categories

forum community discussion
81%
corporate
35%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1881.169.145.143Germany
AS6724Strato GmbH
3142.251.127.95Google · CDNUnited States
AS15169Google LLC
33.160.150.115Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
3104.26.5.146Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3142.251.110.95Google · CDNUnited States
AS15169Google LLC
33.160.150.46Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
3104.26.4.146Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.26.12.152Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
33.171.214.119Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
3142.250.154.147Google · CDNUnited States
AS15169Google LLC
7821--

Detected Technologies11

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E7031A72D2E925833B0D8BBDB2A1F35C6258921555167B6AB0F431BC680C6FF00E7E5E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:gmqQmsSGDjAxCmCFAxNMyoFdF6BXvqaVZdyp6b:r5kxCmCKNMyobQNqa9ypK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:38002:KSNiVqggnjdJVDgoBJAJQZIoMBMQQvKk0xDGKmgIQjfBYWwUIhEIRLBTFQAAGGhKQkBIAUgt+EJWgI1WeTx+koA4UAigEwIk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:003c7e7e7e7e3e00
Perceptual Hash:92926d9239bc6bac
Difference Hash:d0dcc4f4f4dcf0b2
Wavelet Hash:003c7e7e7c7e3e00
Color Hash:#87b2c5

Scan History

Scan history not available

Unable to load historical scan data