Security Scan Report: sp181607.sitebeat.crazydomains.com

Site favicon
Submitted: Dec 9, 2025, 12:38:37 AMCompleted: Dec 9, 2025, 12:39:08 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 4 domains to perform 30 HTTP transactions. The main domain is sp181607.sitebeat.crazydomains.com.

Submitted URL: https://sp181607.sitebeat.crazydomains.com/

The Cisco Umbrella rank of the primary domain is #481,468 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High‑risk phishing site harvesting credentials; do not use or submit any data.

Risk Factors
Credential harvesting form with disguised password field
Hidden password field indicating attempt to conceal input
Unicode characters used to evade detection
Password-only form lacking username/email field
Domain rank well below top 100k and likely newly registered
Domain age information unavailable

Details

Page Title

webmail login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

You're looking at domain 'sp181607.sitebeat.crazydomains.com' on the commercial generic top-level domain (.com), featuring subdomain 'sp181607.sitebeat'. Its registrable label 'crazydomains' stretches across 12 characters containing 4 vowels alongside 8 consonants. Word splitting yields 2 words: crazy, domains. Median word length comes out to six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sp181607.sitebeat.crazydomains.com/

Page Load Overview

10.39s
Total Load Time
30
HTTP Requests
4
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,003 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
58.6.112.0United States
AS13335CLOUDFLARENET
5103.67.235.120Perth, Western Australia, Australia
AS38719Dreamscape Networks Limited
534.117.140.48Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
58.47.69.0United States
AS13335CLOUDFLARENET
52a06:98c1:3123:8000::United States
AS13335CLOUDFLARENET
52a06:98c1:3122:8000::United States
AS13335CLOUDFLARENET
306--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16EA32F91581B0001B38B5CDE37CFBB1AA50EA35BA841D6257BFC2B882FDED3512A175D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Hsqc8jzHH8d47R7F7Z7r7S7r7KRFZrSrGlZdv2PaNxVnO3mxl5LyLeVpt/GfyDRu:9K6UJwNsNhRqfg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:107358:hKkACrGlE6EQUogEAUDBGnGEQWAVhIeUBIABIgCMHvA0PwIQiJAWB3HUiJDlTBo0BsCIMVIAAAhTYQBGSwMAIbQUCQKAJjlg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data