Security Scan Report: elite-dealers.com

Redirected to: https://www.rabatmarathon.com/wp-admin/maint/mMbMMMbHbbGg/

Submitted: Oct 28, 2025, 11:46:07 AMCompleted: Oct 28, 2025, 11:49:16 AMpubliccompleted
Loading additional data...

Summary

This website contacted 17 IPs in 1 country across 5 domains to perform 18 HTTP transactions. The main domain is rabatmarathon.com and was registered NaN years ago.

Submitted URL: https://elite-dealers.com/htmlpurifier/extras/FSTools/mk.htm

Effective URL: https://www.rabatmarathon.com/wp-admin/maint/mMbMMMbHbbGg/Redirected

AI Security Verdict

High Risk

Confidence: 75%

9
Risk Score

New domain with WordPress admin path suggests possible compromise; monitor and avoid providing credentials.

Risk Factors
Critical new domain (<7 days old)
Presence of WordPress admin path in URL (common on hacked WordPress sites used for phishing)
Domain age information unavailable

Details

Page Title

404 Error: Page Not Found

Scan Type

public

Language

🇺🇸

English

(63% confidence)

Category

healthcare medical

(39%)

Domain Information

Within the commercial generic top-level domain (.com), 'elite-dealers.com' is registered without a subdomain. The second-level label 'elite-dealers' is 13 characters long containing six vowels alongside 6 consonants, notching one hyphen. Segmentation suggests two words: elite, dealers. Expect six characters per word on average. The linguistic tilt is English for 'elite'. Secondary signals appear in Dutch and Chinese (Pinyin).

Screenshot

Security scan screenshot of https://elite-dealers.com/htmlpurifier/extras/FSTools/mk.htm

Page Load Overview

7.12s
Total Load Time
18
HTTP Requests
5
Domains
210 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:63%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:63%
Script Type:Latin
Text Length:93 chars
Detector Agreement:67%

Website Classification

Primary Category

healthcare medical39% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

healthcare medical
39%
news media journalism
38%
adult content
37%
government public service
34%
documentation technical
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1234.49.229.81Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
298.90.150.80Ashburn, Virginia, United States
AS14618AMAZON-AES
234.149.87.45Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
298.88.208.241Ashburn, Virginia, United States
AS14618AMAZON-AES
113.57.126.248San Jose, California, United States
AS16509AMAZON-02
1104.26.0.208United States
AS13335CLOUDFLARENET
198.91.139.188Ashburn, Virginia, United States
AS14618AMAZON-AES
1172.67.71.32United States
AS13335CLOUDFLARENET
118.213.178.42Ashburn, Virginia, United States
AS14618AMAZON-AES
12606:4700:20::ac43:4720United States
AS13335CLOUDFLARENET
1817--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17E5153A93E80D2220D124485B423F20CF9B6A51BB4AFEAF0F5FC85A82FDC7D64D1B551

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:AIv/4FKSw+KSnlKSrKS+A+RKSdupsjRKSduI1wyKSduCTKSduH1CphFxXkJkE8Hi:Aw4FKb+KAKSrKS+ASKSopwKSoIzKSoKM

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2647:ABAAAjBAEAIFJQAMDAwBFQkBRmCBAAQAGABBACAICAiKQAAAIICkgAAAIAEABAAAIAAgAAIAACAgAABggiAACkoAEBAIAAgC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffff9f0f0fff3fff
Perceptual Hash:9ff8c2c2380ff00f
Difference Hash:5040747474406840
Wavelet Hash:f0300000001030f0
Color Hash:#d28279

Scan History

Scan history not available

Unable to load historical scan data