Security Scan Report: office-online.co.uk

Redirected to: http://office-online.co.uk/wp-login.php?redirect_to=http%3A%2F%2Foffice-online.co.uk%2Fwp-admin%2F&reauth=1

Submitted: Dec 9, 2025, 6:14:38 AMCompleted: Dec 9, 2025, 6:16:15 AMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 2 countries across 4 domains to perform 40 HTTP transactions. The main domain is office-online.co.uk and was registered NaN years ago.

Submitted URL: http://office-online.co.uk/wp-admin/

Effective URL: http://office-online.co.uk/wp-login.php?redirect_to=http%3A%2F%2Foffice-online.co.uk%2Fwp-admin%2F&reauth=1Redirected

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Suspicious compromised WordPress site likely used for phishing; avoid and report.

Risk Factors
Compromised WordPress site indicators
Newly registered domain (<90 days)
Unranked/low‑reputation domain
Presence of bot verification page on a suspicious WordPress admin URL
Domain age information unavailable

Details

Page Title

Bot Verification

Scan Type

public

Language

🇺🇸

English

(65% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'office-online.co.uk' uses the United Kingdom country-code top-level domain (.co.uk) while skipping any subdomain. The second-level label 'office-online' is 13 characters long split between 6 vowels and six consonants, along with one hyphen. Segmentation suggests two words: office, online. The median word length lands at six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://office-online.co.uk/wp-admin/

Page Load Overview

44.06s
Total Load Time
40
HTTP Requests
4
Domains
1.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:65%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:65%
Script Type:Latin
Text Length:54 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5104.21.40.41United States
AS13335CLOUDFLARENET
5216.58.210.131United States
AS15169GOOGLE
5216.58.209.195United States
AS15169GOOGLE
5172.67.175.48United States
AS13335CLOUDFLARENET
52a00:1450:4026:804::2003Ireland
AS15169GOOGLE
52606:4700:3031::ac43:af30United States
AS13335CLOUDFLARENET
52606:4700:3030::6815:2829United States
AS13335CLOUDFLARENET
52a00:1450:4026:803::2003Ireland
AS15169GOOGLE
408--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13EA1B772097200249C1383B196F2774969639343F686DA9478FDA364EFCDDF6C493BA8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:vrlklWJ2wUmpK7AxGJIi+KrEg8UPOynZg8K:OlWJ2wUmpK7kGJIKAgv8

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4928:IGgBTIARYBCOiLQzQgCAAGBxBIADAAEhCQIAACA1AcgQgJAABEIBoAkERBgAAJAhioqSYgIAQMDQApgAI8AgHBF45gQAAAjA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7e7ffffff
Perceptual Hash:e6669999643399cc
Difference Hash:4d4d4d4d0d000c00
Wavelet Hash:e4c0c0e027370f0e
Color Hash:#a1c587

Scan History

Scan history not available

Unable to load historical scan data