Security Scan Report: iptvnordic.se

Submitted: Sep 29, 2026, 6:50:11 AMCompleted: Sep 29, 2026, 6:50:55 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 62%

6
Risk Score

Established domain presenting its own IPTV brand and directing users to a separate anonymous purchase site, with content advertising evasion of law enforcement. No phishing, malware or credential-harvesting signals, but the service offered is illicit piracy.

Risk Factors (3)
Promotes illegal IPTV/piracy subscription service
Encourages use of anonymity to evade law enforcement ('razzia')
Uses an unrelated unranked script domain (alienstreams.one) that loads content into the page
Safety Factors (4)
Domain active for approximately 3 years (registered 2022-11-23)
No forms, password fields or payment fields detected
No Indicators of Compromise, YARA, IDS or Safe Browsing matches
Only minor cross-origin analytics/chat traffic (Jivosite)
Domain age information unavailable

Details

Page Title

Alien Streams

Scan Type

public

Domain Name Analysis

The domain 'iptvnordic.se' uses the Swedish country-code top-level domain (.se) and has no subdomain. Count 10 characters in 'iptvnordic' split between three vowels and seven consonants. It segments into 2 words: iptv, nordic. Expect 5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://iptvnordic.se

Page Load Overview

2.09s
Total Load Time
1.3 MB
Total Size

Language Analysis

Primary Language

🇸🇪Swedish
Code: sv
Confidence:55%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:754 chars
Detector Agreement:100%
Language mismatch: Declared as en-US but detected as sv

Website Classification

Primary Category

social media network52% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
52%
corporate business
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
889.249.49.145Netherlands
AS206264Amarutu Technology Ltd
6172.217.208.95Google · CDNUnited States
AS15169Google LLC
65.101.71.73Yerevan, Yerevan, Armenia
AS201589edgeam LLC
6142.251.14.94Google · CDNUnited States
AS15169Google LLC
65.252.32.145Slovakia
AS59796StormWall s.r.o.
694.131.94.24Kazakhstan
AS208795Cloud Services Kazakhstan LLP
6142.251.13.95Google · CDNUnited States
AS15169Google LLC
447--

Detected Technologies6

WordPressv7.1.2
100%
JQueryv3.7.1
100%
50%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15E23D5FEB024199D7A1F875FD046320CA0999EA3EA02B5F6F6F550208B74CF172E7209

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:T9Zdypa9GF+QCJ3t9eJ8dYTpvJ+b0vLBFxd48nh6ntxcc9ROh6ntxccxMq:TVypdLCJ3tNYTpvRFQ8h6ntxccc6ntxL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:47561:BgSDQxgI0VQCAiQkeqiYM6FXhwxAQA0MpRAEkshOISjASI0DJYjZoopDwpRoGAQECERGEBEjXW8IBs0wEYKCFIQBXPTQLULT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c0d8d87d3f381801
Perceptual Hash:c9f07a1e26cee918
Difference Hash:8e12b2e9eaf27007
Wavelet Hash:c0d8f8ff3f383801
Color Hash:#6ccee0

Scan History

Scan history not available

Unable to load historical scan data