Security Scan Report: dukcapil.info

Redirected to: https://theodorefoundation.org/

Site favicon
Submitted: Feb 26, 2026, 8:30:40 PMCompleted: Feb 26, 2026, 8:31:58 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 2 countries across 7 domains to perform 45 HTTP transactions. The main domain is theodorefoundation.org and was registered NaN years ago.

Submitted URL: http://dukcapil.info/

Effective URL: https://theodorefoundation.org/Redirected

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

New gambling site with login and payment forms; moderate risk, not clear phishing.

Risk Factors
Very new domain (<30 days) – high likelihood of malicious intent
Password field without accompanying username field – suspicious credential collection pattern
Payment field on a newly registered domain – potential fraudulent payment collection
Safety Factors
No malicious Indicators of Compromise matches found
No JavaScript malware patterns detected
No network IDS alerts
Content is gambling‑related, not impersonating a major brand
Domain age information unavailable

Details

Page Title

Togel Cambodia : Pengeluaran Kamboja Hari Ini, Keluaran Cambodia, Result Togel Cambodia, Live Draw Cambodia Pools

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

e-commerce

(90%)

Domain Information

Within the informational generic top-level domain (.info), 'dukcapil.info' is registered with no subdomain. The core label 'dukcapil' covers 8 characters with three vowels and 5 consonants. Segmentation suggests 4 words: d, uk, cap, il. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://dukcapil.info/

Page Load Overview

4.04s
Total Load Time
53
HTTP Requests
7
Domains
4.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-GB
Text Length:9,320 chars
Detector Agreement:60%

Website Classification

Primary Category

e-commerce90% confidence
Type: spa
Method: structural

All Detected Categories

e-commerce
90%
corporate
70%

Detected Features

Search
Payment
OG: product
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11172.67.211.177United States
AS13335Cloudflare, Inc.
7142.250.186.67Sweden
7142.251.36.106Sweden
7104.16.80.73United States
AS13335Cloudflare, Inc.
7104.21.32.119United States
AS13335Cloudflare, Inc.
7146.75.123.42SwedenUnknown
7104.18.40.238United States
AS13335Cloudflare, Inc.
537--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11C24F961A5FC0D3D89AB86E075666B0E2ABE9113D94D2ED9F7FC07A40FC3CE19513248

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:suam2oo5wWkmycHV1+xRCe4ROCD24baYHc7PTureSjURbtD:HWkmySxDb4Z

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:227964:QliA6J1EU45MBIxCG4rEU4LmLADuYQGowgAAHaoCxnVBGQCRoBUBLdkJEGhIEEQUnAzjcA0QBKbgAIEqiaYUmwgQpSQViYcG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffcf8f8f8f8100
Perceptual Hash:bad543b84cbb10ae
Difference Hash:181a2e3b3b3b2b33
Wavelet Hash:eeff878f8f818100
Color Hash:#8879d2

Scan History

Scan history not available

Unable to load historical scan data