Security Scan Report: login-b3c1doh1w4.cirrusresponse.com

Site favicon
Submitted: Aug 19, 2026, 2:33:03 PMCompleted: Aug 19, 2026, 2:34:25 PMpubliccompleted

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 2 HTTP transactions. The main domain is login-b3c1doh1w4.cirrusresponse.com and was registered NaN years ago.

Submitted URL: https://login-b3c1doh1w4.cirrusresponse.com

The Cisco Umbrella rank of the primary domain is #415,599 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

Legitimate login portal for Cirrus Response with low risk; no malicious indicators detected.

Safety Factors
Own-brand domain
No cross‑origin credential exfiltration
Long‑standing domain (over 14 years)
No malicious JavaScript or external form actions
Domain age information unavailable

Details

Page Title

Cirrus: Portal Login

Scan Type

public

Language

🇺🇸

English

(45% confidence)

Category

cryptocurrency blockchain

(39%)

Domain Information

Within the commercial generic top-level domain (.com), 'login-b3c1doh1w4.cirrusresponse.com' is registered; it also runs on subdomain 'login-b3c1doh1w4'. The registrable portion 'cirrusresponse' spans 14 characters containing five vowels alongside nine consonants. Breaking it apart gives two words: cirrus, response. Average segment length settles at 7 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://login-b3c1doh1w4.cirrusresponse.com

Page Load Overview

0.84s
Total Load Time
5
HTTP Requests
3
Domains
74 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:45%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:45%
Script Type:Latin
Text Length:284 chars
Detector Agreement:75%

Website Classification

Primary Category

cryptocurrency blockchain39% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

cryptocurrency blockchain
39%
healthcare medical
30%
documentation technical
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3172.217.208.95Google · CDNUnited States
AS15169Google LLC
294.31.59.69City of Westminster, England, United Kingdom
AS6461Zayo Bandwidth
52--

Page Statistics

5
Requests
3
Unique Domains
75.3 KB
Total Size

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B531527B28044C1E9342C2D1BE91790DA49B973BCB0AC848A5F995DF62B4FDFC1A6247

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:k09qKEAC3JI3N/inN/147ZKrrogUYcvMNkJIKXCWeBkXfzNKaaNAG+0kIl/q3/k8:yoNiNqSoJYSMNAnXNA+0kOcMbNa6M

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1765:CACEEEAKggCIAAAoBAEAAAAAAAAAgBAAAoAACQEAAAAAAAkAAABEgAAACAAUAADgAAhAAAAACAAAACGAFAQBEgEAUAACAAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e0e0e1f9c3c38387
Perceptual Hash:ffcf272389892262
Difference Hash:47070f330f0f1f1f
Wavelet Hash:f0e0e1f9c3c38387
Color Hash:#e08f6c

Other Hashes

Crop Resistant:47070f330f0f1f1f

Scan History

Scan history not available

Unable to load historical scan data