Security Scan Report: messe-leads.net

Redirected to:
https://messe-leads.net/login
Submitted: Apr 27, 2026, 2:41:09 PMCompleted: Apr 27, 2026, 2:42:26 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 3 domains to perform 1 HTTP transaction. The main domain is messe-leads.net and was registered NaN years ago.

Submitted URL: https://messe-leads.net/

Effective URL: https://messe-leads.net/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

New, unranked domain with a login form and heavily obfuscated JavaScript; classified as confirmed credential phishing.

Risk Factors
Brand‑new domain (<7 days) with credential collection
Unranked domain reputation
High JavaScript obfuscation
Login form on a newly registered site
Domain age information unavailable

Details

Page Title

Messe Leads

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

government public service

(35%)

Domain Information

Within the network infrastructure generic top-level domain (.net), 'messe-leads.net' is registered. The registrable portion 'messe-leads' spans 11 characters containing four vowels alongside six consonants; it also includes 1 hyphen. Breaking it apart gives 2 words: messe, leads. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://messe-leads.net/

Page Load Overview

1.01s
Total Load Time
18
HTTP Requests
3
Domains
136 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:57 chars
Detector Agreement:50%

Website Classification

Primary Category

government public service35% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
35%
adult content
35%
news media journalism
28%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6142.251.14.94United States
AS15169Google LLC
6142.251.39.138United States
AS15169Google LLC
6178.105.37.88Germany
AS24940Hetzner Online GmbH
183--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T131325566BC05FE4ADC2ABC5D013E9D3A10CD897F86A1C9B8D2CCCE1506929B61BD2DD1

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:SWrZuYXrNnL1FA8VDKa0SPztc3SLa7cg1xqzc/xmWo7Zj6iI/hocPcn5q1pjh9Fx:SWrZuYXpnJFG7SzgnqzcpmkEqx9D1wE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11117:SxDGIEQJyEMAkBgChhTURTQ8GPDkFMgQ8AEiiZojQGEhWxiQXSyQEsBiKoGQI5AJVIEFijU20RUgAECIM9CFQAAxBAwiqMtB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7dbe7e7ffe7
Perceptual Hash:b38ccc3399cc6633
Difference Hash:00000c324c4c3008
Wavelet Hash:f0f0e0f8e0e0f0f0
Color Hash:#b7bf40

Other Hashes

Crop Resistant:00000c324c4c3008

Scan History

Scan history not available

Unable to load historical scan data