Security Scan Report: tracker.viriback.com

Site favicon
Submitted: Nov 28, 2025, 11:25:05 AMCompleted: Nov 28, 2025, 11:25:39 AMpubliccompleted
Loading additional data...

Summary

This website contacted 17 IPs in 2 countries across 5 domains to perform 38 HTTP transactions. The main domain is tracker.viriback.com and was registered NaN years ago.

Submitted URL: https://tracker.viriback.com/

AI Security Verdict

Safe Website

Confidence: 92%

1
Risk Score

Legitimate site with no apparent security concerns.

Safety Factors
Well‑established domain
No malicious Indicators of Compromise
No credential collection forms
Domain age information unavailable

Details

Page Title

ViriBack C2 Tracker

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

cryptocurrency blockchain

(81%)

Domain Information

Domain 'tracker.viriback.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'tracker'. Its registrable label 'viriback' stretches across 8 characters containing 3 vowels alongside 5 consonants. Tokenizing the label suggests 3 words: vi, ri, back. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tracker.viriback.com/

Page Load Overview

0.37s
Total Load Time
38
HTTP Requests
5
Domains
1.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,813 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain81% confidence
Type: static
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
81%
technology software
73%
phishing scam
68%
documentation technical
55%
news media journalism
43%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2549.12.22.106Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
8104.26.2.142United States
AS13335CLOUDFLARENET
3104.18.10.207United States
AS13335CLOUDFLARENET
2172.67.74.199United States
AS13335CLOUDFLARENET
2104.18.11.207United States
AS13335CLOUDFLARENET
2104.26.3.142United States
AS13335CLOUDFLARENET
22606:4700::6812:bcfUnited States
AS13335CLOUDFLARENET
2104.16.79.73United States
AS13335CLOUDFLARENET
22606:4700:20::ac43:4ac7United States
AS13335CLOUDFLARENET
22a00:1450:4001:80b::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
3817--

Detected Technologies2

JQueryv2.1.3
100%
Bootstrapv3.3.5
100%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10A5220A358EE893F46246799E4207EADC4F7413AC7750805F9AF09DFCB44BBDA81314A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:jykn2ffyzRirvFsIVth5VsbjGyoMSFn14yEw5MDL0Iby:+kn2HgRiRsfw5MDLVy

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13260:DBU0ERorQsA1gDADxAmIGgAMwAT824IwxOGYZgHhowCBgEGFQgmRBjA4ChoIg4AEougMAFAAmBg6eDI0Xi6gagChBqgbEbFA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff9e9f0f00ffff7f
Perceptual Hash:9e1ec4606391bb6e
Difference Hash:9220785841b0f0c1
Wavelet Hash:409e1f0f00ffff01
Color Hash:#622d86

Other Hashes

Crop Resistant:9220785841b0f0c1

Scan History

Scan history not available

Unable to load historical scan data