Security Scan Report: eczamedikal.org

Redirected to:
https://www.noticeofpleadings.net/lumma/domainseizurenotice.htm
Submitted: Sep 13, 2026, 5:47:52 AMCompleted: Sep 13, 2026, 5:48:17 AMpubliccompleted

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 2 HTTP transactions. The main domain is noticeofpleadings.net and was registered 2 years 3 months ago.

Submitted URL: https://eczamedikal.org

Effective URL: https://www.noticeofpleadings.net/lumma/domainseizurenotice.htmRedirected

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Scanned domain eczamedikal.org is a confirmed Lumma Stealer C2 (3 feeds, 2 CRITICAL IDS alerts). It redirects to a page posing as a Microsoft seizure notice on a non-Microsoft domain. Confirmed malware infrastructure.

Risk Factors
Primary scanned domain is a confirmed Lumma Stealer command-and-control host (lummac2)
Critical network IDS alerts for active malware C2 contact
Microsoft brand/seizure notice displayed on a non-Microsoft domain
Cross-domain redirect to an unranked, low-reputation host
Domain age information unavailable

Details

Page Title

This website domain has been seized by Microsoft

Scan Type

public

Language

🇺🇸

English

(56% confidence)

Category

technology software

(71%)

Domain Information

Domain 'eczamedikal.org' uses the non-profit oriented generic top-level domain (.org) and has no subdomain. The core label 'eczamedikal' covers 11 characters split between 5 vowels and six consonants. Word splitting yields four words: ec, za, medi, kal. Expect 2.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://eczamedikal.org

Page Load Overview

5.83s
Total Load Time
12
HTTP Requests
2
Domains
2.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:56%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:56%
Script Type:Latin
Text Length:1,000 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software71% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
71%
corporate business
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
640.91.108.115Azure · CLOUDUnited States
AS8075Microsoft Corporation
6150.171.110.49Azure · CLOUDUnited States
AS8075Microsoft Corporation
122--

Page Statistics

12
Requests
2
Unique Domains
2.7 MB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CFA17601E5D5762BB04284C056273FA53BC84107C36E89A4B5E563AD1FC7CD6C6B3798

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:qewe5LfAnARZab+1wJDkev3oa5Zwj3yAWuo6OXpryDv8UV3m:qeBtfPRd6wa5XI8UV2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4766:AMAABIFgBiABCeAICjAgEIAWAlIIQBAgAAAAACAKIYIgAEEgggwgQDBAgAJcIKJBAmBAAEIQgACAAQwCwQRAYgLIgRBgQAPg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e700ff0fffffffff
Perceptual Hash:b33266e6b2b3a2c4
Difference Hash:0c22313900080008
Wavelet Hash:e7000000ffffff81
Color Hash:#532dd2

Scan History

Scan history not available

Unable to load historical scan data