Security Scan Report: ww16.gvg-koeln.de

Submitted: Feb 15, 2026, 5:54:34 AMCompleted: Feb 15, 2026, 5:56:06 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is ww16.gvg-koeln.de.

Submitted URL: http://ww16.gvg-koeln.de/?sub1=20260215-1654-3356-a836-56c00781605b

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Site exhibits suspicious circular redirect and unknown age; treat as high risk.

Risk Factors
Circular redirect (strong indicator of URL manipulation)
Unknown domain age (treated as potentially new/suspicious)
Unranked domain with no reputation
Domain age information unavailable

Details

Page Title

ww16.gvg-koeln.de

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(78%)

Domain Information

You're looking at domain 'ww16.gvg-koeln.de' on the German country-code top-level domain (.de) with subdomain 'ww16'. The second-level label 'gvg-koeln' is 9 characters long with two vowels and 6 consonants, plus one hyphen. Breaking it apart gives five words: g, vg, ko, el, n. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://ww16.gvg-koeln.de/?sub1=20260215-1654-3356-a836-56c00781605b

Page Load Overview

8.10s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:747 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software78% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
78%
documentation technical
55%
adult content
50%
government public service
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
364.190.63.136Germany
AS47846SEDO GmbH
31--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E4048E77329A063986558498F05B83099F21B143F506C9BC79BCBAD8BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:vfQho9PKBb9Js3q9Jzbs6tlg1ySBKwdQWgceIsz62bMy8Old9:whoC9JSqzzbs6okSj3gcrsm2eAr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:187255:AJBhAIRQIAAAY2EQsICSAgECQUgAQAiMOqHgoEGiILBAgASGQCZqOC4qJKMLr+NIscJ8EQOCISEhAoQAqUEQIkSCAGABBARS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc7c7c3d3ffffff
Perceptual Hash:b1339acccc93b364
Difference Hash:0018181616000000
Wavelet Hash:fcdcc4c4c0f8f0f0
Color Hash:#1f9340

Other Hashes

Crop Resistant:0018181616000000

Scan History

Scan history not available

Unable to load historical scan data