Security Scan Report: tgmacro.io

Site favicon
Submitted: May 1, 2026, 10:00:39 AMCompleted: May 1, 2026, 10:01:58 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 3 countries across 11 domains to perform 64 HTTP transactions. The main domain is tgmacro.io and was registered NaN years ago.

Submitted URL: https://tgmacro.io/

AI Security Verdict

Moderate Risk

Confidence: 82%

5
Risk Score

The site collects credentials on an unranked domain with heavily obfuscated JavaScript and many redirects, indicating a high‑risk phishing threat.

Risk Factors
Unranked domain reputation
Credential collection form on non‑brand site
Highly obfuscated JavaScript
Excessive redirects
Safety Factors
Domain age >3 years (well established)
No Indicators of Compromise matched
No JavaScript malware YARA patterns detected
No network IDS alerts
No credential exfiltration observed
Established domain (1135 days old) with no strong malicious indicators — risk clamped from 8 to 5
Domain age information unavailable

Details

Page Title

OLXTOTO ⚡️ Area Bermain Slot Gacor Online Paling Populer

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

e-commerce

(40%)

Domain Information

The domain 'tgmacro.io' uses the British Indian Ocean Territory country-code top-level domain (.io) while skipping any subdomain. The second-level label 'tgmacro' is 7 characters long containing two vowels alongside 5 consonants. Splitting it apart reveals 2 words: tg, macro. Average segment length settles at 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tgmacro.io/

Page Load Overview

5.89s
Total Load Time
182
HTTP Requests
14
Domains
8.4 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:19,517 chars
Detector Agreement:40%

Website Classification

Primary Category

e-commerce40% confidence
Type: spa
Method: ml+structural

All Detected Categories

e-commerce
40%
corporate
35%
entertainment media
30%

Detected Features

Search
Products
OG: product
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
20104.21.79.122United States
AS13335Cloudflare, Inc.
18172.239.57.117Chicago, Illinois, United States
AS63949Akamai Connected Cloud
1823.227.39.200Ottawa, Ontario, Canada
AS13335Cloudflare, Inc.
18185.111.111.155Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
18104.21.59.246United States
AS13335Cloudflare, Inc.
18104.16.79.73United States
AS13335Cloudflare, Inc.
1834.8.119.189Kansas City, Missouri, United States
AS396982Google LLC
18188.114.97.3United States
AS13335Cloudflare, Inc.
1823.52.180.143Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
1823.227.38.74Ottawa, Ontario, Canada
AS13335Cloudflare, Inc.
18210--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T161944BF185F12066014381F9F72ABB59FB91A007CB86C950BBEC07C45FD2EA7866B95C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:b321gCpXaI6HAJJ9GVmxY3wD3CQOA1MhpbXDHC:b+gCpXayJJjCcMhtG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:428096:CkLGUAA2qMADzQBAMMyAmY8QrOBKNU5xBAQasUiqCBiEIFCMVRJRBKpAhRCgRxBBBEgFgE5MIBJcqLGAbFiBRLoHJWG4A1E5

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data