Security Scan Report: cuinzoun.tempurl.host

Submitted: Oct 22, 2025, 4:10:06 AMCompleted: Oct 22, 2025, 4:11:36 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 2 domains to perform 16 HTTP transactions. The main domain is cuinzoun.tempurl.host and was registered NaN years ago.

Submitted URL: https://cuinzoun.tempurl.host/wp-admin/dianoziu/roglisouir/home.php?newtoken=

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High risk phishing site impersonating DHL, likely harvesting credentials.

Risk Factors
Compromised WordPress site used for phishing
Credential harvesting form with disguised and hidden password fields
Password field lacking username field indicates malicious intent
Unicode evasion in form fields
Impersonation of DHL on a low‑reputation, unranked domain
Domain age information unavailable

Details

Page Title

Verification | DHL

Scan Type

public

Language

🇫🇷

French

(80% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'cuinzoun.tempurl.host' on the .host top-level domain and includes subdomain 'cuinzoun'. Its registrable label 'tempurl' stretches across 7 characters split between 2 vowels and five consonants. Segmentation suggests 2 words: temp, url. Expect 3.5 characters per word on average. 'tempo' most often appears in Galician. Secondary signals appear in Italian and Malay.

Screenshot

Security scan screenshot of https://cuinzoun.tempurl.host/wp-admin/dianoziu/roglisouir/home.php?newtoken=

Page Load Overview

28.66s
Total Load Time
16
HTTP Requests
2
Domains
167 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:fr
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:fr
Text Length:3,600 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
664.176.14.132Santiago, Santiago Metropolitan, Chile
AS20473AS-VULTR
2104.21.45.113United States
AS13335CLOUDFLARENET
22606:4700:3037::6815:2d71United States
AS13335CLOUDFLARENET
22606:4700:3035::ac43:d592United States
AS13335CLOUDFLARENET
22001:19f0:c800:2f75:5400:5ff:feb3:a90eSantiago, Santiago Metropolitan, Chile
AS20473AS-VULTR
2172.67.213.146United States
AS13335CLOUDFLARENET
166--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BF734B7851F64676887B82C27B752B163FD2E20BC99A050236FC1FB55FA9DC7A80352C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:DoyS3NrtY6eAvNEBluhmcW6W0gVzUkXH/:2CwvNEBcmTt/

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:74582:GKVDO1Dus1ohFLkgQgAAgNAZwxB6RZA8QRcABCUhiYAQQlQSQgSB8EYsFAEEUS6Oy6GwBJRgEDgKBxQgXCWxSihCwZAASCCA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data