Security Scan Report: littleolange.com

Site favicon
Submitted: Sep 22, 2026, 10:47:28 AMCompleted: Sep 22, 2026, 10:48:42 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Page serves a ClickFix/AMOS malware loader (critical IDS alert, .life C2 traffic) and its domain carries a malware indicator despite showing a benign shop front. Avoid.

Risk Factors (5)
Critical IDS malware alert for AMOS ClickFix loader script request
Primary domain has a malware-typed threat-intel indicator
Malicious third-party resource (wp inject) loaded by the page from 2 corroborating feeds
Traffic to randomly-named .life domains consistent with C2/malware staging
Fake 'checking your browser' wait screen typical of ClickFix social-engineering lures
Domain age information unavailable

Details

Page Title

littleolange.com

Scan Type

public

Domain Name Analysis

Domain 'littleolange.com' uses the commercial generic top-level domain (.com). Its registrable label 'littleolange' stretches across 12 characters split between 5 vowels and 7 consonants. Breaking it apart gives three words: little, o, lange. Average segment length settles at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://littleolange.com

Page Load Overview

1.42s
Total Load Time
77 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:2,004 chars
Detector Agreement:100%

Website Classification

Primary Category

education learning67% confidence
Type: spa
Method: ml+structural

All Detected Categories

education learning
67%
entertainment media
47%
news/blog
20%

Detected Features

Articles
Products

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
692.113.16.25Frankfurt am Main, Hesse, Germany
AS47583Hostinger International Limited
0172.217.208.95Google · CDNUnited States
AS15169Google LLC
089.208.107.148Amsterdam, North Holland, Netherlands
AS210644Aeza Group LLC
0192.0.76.3San Francisco, California, United States
AS2635Automattic, Inc
0142.250.154.97Google · CDNUnited States
AS15169Google LLC
092.113.23.123Frankfurt am Main, Hesse, Germany
AS47583Hostinger International Limited
0142.250.154.94Google · CDNUnited States
AS15169Google LLC
67--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16CE3D6B2B7B02539327B533DF58BB24429689123E74D26E9F8BE914C86C97D7207170E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:39RnAlt5E+SuWsHfOqCuUIuBETq61jypOvXiu5p7R:39ES5Giu5pN

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:144864:ABEQNQgWBNHDKYYQGAGDBBoZmZUTgqpJKscCBAIU1oIUeAlIWgQAUAPBEAHTgjAhlykUVIMSwouGIGgQrBjgj2NIAXESBwkk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7c3ffffff
Perceptual Hash:b38ccc3333cccc33
Difference Hash:0000000c0c000000
Wavelet Hash:fffffbe3003c0000
Color Hash:#86842d

Other Hashes

Crop Resistant:0000000c0c000000

Scan History

Scan history not available

Unable to load historical scan data