Security Scan Report: mvl.whm.www.app.admin.as.152-53-37-155.plesk.page

Redirected to:
https://mvl.whm.www.app.admin.as.152-53-37-155.plesk.page/
Site favicon
Submitted: Sep 29, 2026, 3:50:27 PMCompleted: Sep 29, 2026, 3:51:29 PMpubliccompleted

This website contacted 24 IPs in 2 countries across 20 domains to perform 109 HTTP transactions. The main domain is mvl.whm.www.app.admin.as.152-53-37-155.plesk.page and was registered 21 years ago.

Submitted URL: http://mvl.whm.www.app.admin.as.152-53-37-155.plesk.page/

Effective URL:

https://mvl.whm.www.app.admin.as.152-53-37-155.plesk.page/
Redirected

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Unranked free-hosting subdomain portal ('Reds Exploit Corner') pushing exploit/cheat links. No credential or payment forms, no Indicators of Compromise, YARA, IDS or Safe Browsing hits — suspicious content, but no concrete malicious signal.

Risk Factors (4)
Free instant-hosting subdomain namespace commonly used for abuse
Unranked domain with no reputation
Portal named 'Reds Exploit Corner' advertising exploit/game-cheat links via Discord
Inline script encoding/decoding functions (obfuscation-capable)
Safety Factors (6)
No password, payment or disguised credential fields (forms=1; password=0, payment=0, disguised=0)
No Indicators of Compromise or threat-intel matches against the page or its resources
No JavaScript YARA malware patterns, no known-bad kit roster hits, no native-YARA hits
No network IDS/Suricata alerts
No cross-origin credential submission and no credential exfiltration detected
Cross-origin scripts are common analytics/CDN/font providers (Google Analytics, DoubleClick, FontAwesome, jsDelivr)
Domain age information unavailable

Details

Page Title

Google

Scan Type

public

Domain Name Analysis

The domain name 'mvl.whm.www.app.admin.as.152-53-37-155.plesk.page' uses the .page top-level domain and includes subdomain 'mvl.whm.www.app.admin.as.152-53-37-155'. The second-level label 'plesk' is 5 characters long split between one vowel and four consonants. It segments into two words: pl, esk. Expect 2.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://mvl.whm.www.app.admin.as.152-53-37-155.plesk.page/

Page Load Overview

4.64s
Total Load Time
9.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:81 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software53% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
53%
entertainment media
26%
documentation technical
26%
social media network
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
17152.53.37.155Manassas, Virginia, United States
AS214996netcup GmbH
4104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4172.67.139.119Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4192.178.170.95Google · CDNUnited States
AS15169Google LLC
4142.250.154.97Google · CDNUnited States
AS15169Google LLC
4192.178.183.94Google · CDNUnited States
AS15169Google LLC
4188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4216.239.32.36Google · CDNUnited States
AS15169Google LLC
4142.251.127.155Google · CDNUnited States
AS15169Google LLC
10924--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T126D32EF9D24C10D67332C44BAB45B37C66B6F739D9810C65F12F680C5EC2AA522CAF69

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:FKiYurv4FmMCMPMCMjMCM4MCMwMCM3sVMH709gbPMfjSFOTyPGuGprrlCs8y1:bgb709gMGFiyPGuGprlCsd

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:142030:XIBRgQAUTQyC4UgsAQoxC+iAEGMwakkDYYXVOiQpkoATEC/LBZESDJAbg2gAZQYLrBgWQqIxAbiAwwqhLLoYBMKRSBoQJjTS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:803dff9132e5002d
Perceptual Hash:86dc19e6663993c6
Difference Hash:317171226709d0d1
Wavelet Hash:98bdbd91b181813f
Color Hash:#3a7853

Scan History

Scan history not available

Unable to load historical scan data