Security Scan Report: myfinanzplaner.de

Site favicon
Submitted: Sep 20, 2026, 8:47:26 PMCompleted: Sep 20, 2026, 8:47:44 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 66%

7
Risk Score

Established WordPress domain shows injected wp_footer PHP code and a single-source malware indicator (iclickfix); likely compromised with malicious script injection. No credential form, but avoid the site.

Risk Factors (3)
Primary-domain malware indicator (iclickfix) — single-source and unverified, so treated as one signal, not a confirmed family attribution
Injected wp_footer PHP echo visible in page output indicates a likely compromised WordPress installation
Obfuscator-usage IDS hunting alerts corroborate injected/obfuscated script activity
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

The domain 'myfinanzplaner.de' uses the German country-code top-level domain (.de). Its registrable label 'myfinanzplaner' stretches across 14 characters holding 4 vowels versus 10 consonants. Breaking it apart gives four words: my, fin, anz, planer. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://myfinanzplaner.de

Page Load Overview

0.48s
Total Load Time
5 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Text Length:112 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism63% confidence
Type: static
Method: ml+structural

All Detected Categories

news media journalism
63%
adult content
56%
government public service
55%
healthcare medical
48%
real estate property
45%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
285.13.168.143Germany
AS34788Neue Medien Muennich GmbH
21--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15D7294634340433BE2D449E1D659755B57F1EA4BE478201DAFA3ADFEF82D4868438B23

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:66yrT/4hViJVqYvE/hti6yrT/4hViJVqYvE/htY:9yrT+yw/1yrT+yw/4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17038:FkjuCaAABIgQAQLCAUiclKLOkBaIo0iSAAGmAVNBARhEgUhRyhh0wIOkSQJsEOFWrCggX4MwDAyA2lJAAAgEIQAEhAOgOiFH

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1fffffffffffffff
Perceptual Hash:9c1e1e1e1e1e1e1e
Difference Hash:3000000000000000
Wavelet Hash:10f0f0f0f0f0f0f0
Color Hash:#bf4062

Other Hashes

Crop Resistant:3000000000000000

Scan History

Scan history not available

Unable to load historical scan data