Security Scan Report: sp503629.sitebeat.crazydomains.com

Site favicon
Submitted: Oct 9, 2025, 7:56:33 PMCompleted: Oct 9, 2025, 7:57:36 PMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 2 countries across 4 domains to perform 32 HTTP transactions. The main domain is sp503629.sitebeat.crazydomains.com and was registered NaN years ago.

Submitted URL: https://sp503629.sitebeat.crazydomains.com/

The Cisco Umbrella rank of the primary domain is #408,842 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

High‑risk phishing page harvesting credentials

Risk Factors
Hidden password field using type='text'
Credential harvesting form lacking username input
Unicode characters used to evade detection
Low ranking domain presenting a login interface
Impersonation of a generic webmail service
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

The domain 'sp503629.sitebeat.crazydomains.com' uses the commercial generic top-level domain (.com) with subdomain 'sp503629.sitebeat'. The registrable portion 'crazydomains' spans 12 characters with four vowels and 8 consonants. Breaking it apart gives 2 words: crazy, domains. Median word length is six characters. 'crazy' most often appears in English. Secondary signals appear in Chinese (Pinyin) and French.

Screenshot

Security scan screenshot of https://sp503629.sitebeat.crazydomains.com/

Page Load Overview

48.44s
Total Load Time
32
HTTP Requests
4
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,017 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10103.67.235.120Perth, Western Australia, Australia
AS38719Dreamscape Networks Limited
2172.66.160.115United States
AS13335CLOUDFLARENET
234.117.140.48Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
2104.26.7.16United States
AS13335CLOUDFLARENET
22606:4700:20::681a:610AustraliaUnknown
22606:4700:20::681a:710AustraliaUnknown
22606:4700:10::ac42:a073AustraliaUnknown
2104.26.6.16AustraliaUnknown
22606:4700:20::ac43:463cAustraliaUnknown
22606:4700:10::6814:255bAustraliaUnknown
3212--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10A8352A188175012B38B6DDE37DFBA19A11D534BA841EA217BFC279C1FDDD7A026230D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:47R6t47j7l7W7V7zpv4jJXZq5vl7kPd35KZPxHwLxnJapfl7kPdHp6Jrob1Gr78u:ccvTT4bNsNhRqbbE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:80757:YAWGCrg8KoQYAckAGUAUCClBXwV1AYjQDGZEDDD0pBYXo0RAODGTghTKANSAAAhOEJqDgZEEAIACDBw4+VYAMWKAADKBLABY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data