Security Scan Report: cignaemployalerts.cfd

Submitted: Sep 21, 2026, 8:42:00 PMCompleted: Sep 21, 2026, 8:42:16 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Unranked .cfd domain using a Cigna employee-alert lure, resolving to an IP with multi-source AsyncRAT malware intelligence. No forms or scripts on the parked page itself, but the host and naming are hostile — avoid.

Risk Factors (4)
Multi-source malware (AsyncRAT) indicator hosted on the domain's own IP address
Brand-lure domain construction targeting Cigna employees on a cheap, abuse-prone .cfd TLD
No reputation ranking and minimal business legitimacy signals
Parked/error page misrepresenting itself as an information resource
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Within the .cfd top-level domain, 'cignaemployalerts.cfd' is registered with no subdomain. Count 17 characters in 'cignaemployalerts' containing six vowels alongside 11 consonants. It segments into 5 words: c, ign, a, employ, alerts. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://cignaemployalerts.cfd

Page Load Overview

0.64s
Total Load Time
180 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:167 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical77% confidence
Type: static
Method: ml+structural

All Detected Categories

healthcare medical
77%
documentation technical
51%
government public service
41%
finance banking
33%
corporate business
32%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
191.195.240.123Germany
AS47846SEDO GmbH
0205.234.175.175United States
AS30081CacheFly
12--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17B61FADAC2D03C4D5A038118AC7B4D243518515FB5828A59B88D817E4FDDEBCDD670EF

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:BiEoA8KoxjAVFa+WNItNi49ishylhWRAt6xfG5K4:BiSaatNTUs8lhW+t6xp4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3332:ACAwIACAEEAAwAABgUgAAACAQQAkEgCCECAIhgAAAEAACCNEBBQgANBEAACAACBDCIAggAiAGBBAYAAAECGAAKABAAKBAIAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfc7f3ffffffff
Perceptual Hash:a1319bcecc6c3333
Difference Hash:00181c0600000000
Wavelet Hash:ffdfc7f300000000
Color Hash:#bf9540

Other Hashes

Crop Resistant:00181c0600000000

Scan History

Scan history not available

Unable to load historical scan data