Security Scan Report: alfryudabikuta.com

Redirected to:
https://galootapprehension.xyz/?k=ecea79cb6520e1e3d1d8789b5af025a5.178...
Site favicon
Submitted: Sep 16, 2026, 10:47:36 AMCompleted: Sep 16, 2026, 10:48:08 AMpubliccompleted

This website contacted 1 IP in 1 country across 2 domains to perform 3 HTTP transactions. The main domain is galootapprehension.xyz and was registered 1 year ago.

Submitted URL: https://alfryudabikuta.com

Effective URL:

https://galootapprehension.xyz/?k=ecea79cb6520e1e3d1d8789b5af025a5.178...
Redirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Multi-feed threat intelligence flags this domain as a Latrodectus malware loader; it redirects to an unranked .xyz gatekeeper with a base64 domain token and serves a decoy 'no offers' page. Do not visit or interact.

Risk Factors (4)
Domain reported as Latrodectus malware loader (multi-source corroborated threat intelligence)
Redirect to a different, unranked .xyz domain carrying a base64-encoded token in the URL (TDS/gatekeeper behaviour)
Decoy 'no offers available' placeholder page used to mask malicious delivery
Unknown-age, unranked destination domain with no legitimate reputation
Domain age information unavailable

Details

Page Title

No Offers Available...

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'alfryudabikuta.com' is registered without a subdomain. Count 14 characters in 'alfryudabikuta' split between 6 vowels and 8 consonants. Tokenizing the label suggests 5 words: alf, ryu, dab, i, kuta. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://alfryudabikuta.com

Page Load Overview

4.53s
Total Load Time
2 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:68%
Script:Latin
Direction:ltr

Detection Details

Text Length:13 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content48% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

adult content
48%
healthcare medical
40%
e-commerce shopping
40%
real estate property
37%
news media journalism
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
334.196.13.28Aws · CLOUDAshburn, Virginia, United States
AS14618Amazon.com, Inc.
31--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E9112DE31624CC7A21716479B834B01C3A23991CD696CCD4C14D399D11F4F02C2471D8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hqtomoZ2HN7ZVATWxKj83MxbZ3Mx/ArKILsgD:0C3SmTWxsvx2xorpLsi

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:926:AAABAAAAAAAAAQAAAACACAIgAoIAEAAAAAQAIAAAAAAAAAACAAgAAAAAAAAAAIAEAAAAQAAAAAAAAgoAAACAAAAAAAAABAAE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7ffffffffffff
Perceptual Hash:e666666626999999
Difference Hash:0c0c000000000000
Wavelet Hash:27273f3f00000000
Color Hash:#867d2d

Other Hashes

Crop Resistant:0c0c000000000000

Scan History

Scan history not available

Unable to load historical scan data