Security Scan Report: keeper.cisco.com

Redirected to:
https://keeper.cisco.com/ui/vault/auth
Site favicon
Submitted: Jun 24, 2026, 3:27:08 PMCompleted: Jun 24, 2026, 3:28:24 PMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 24 HTTP transactions. The main domain is keeper.cisco.com and was registered 39 years ago.

Submitted URL: https://keeper.cisco.com

Effective URL:

https://keeper.cisco.com/ui/vault/auth
Redirected

The Cisco Umbrella rank of the primary domain is #304 of the top 1 million websitesTop 1K Site

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

Password‑only login form on a reputable Cisco subdomain; no malicious signals but harvesting pattern raises high risk.

Risk Factors (1)
Credential form lacking username field (suspicious harvesting pattern)
Safety Factors (5)
Domain age > 30 years and well‑established
Cisco Umbrella ranking within top 1 K
No malicious IoC, YARA, or IDS alerts
No external domains or cross‑origin network calls
Established domain (14286 days old) with no strong malicious indicators — risk clamped from 7 to 5
Domain age information unavailable

Details

Page Title

Vault

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'keeper.cisco.com' is registered with subdomain 'keeper'. The second-level label 'cisco' is 5 characters long containing 2 vowels alongside 3 consonants. Segmentation suggests 1 word: cisco. The median word length lands at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://keeper.cisco.com

Page Load Overview

4.63s
Total Load Time
2.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:5 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2434.231.124.100Ashburn, Virginia, United States
AS14618Amazon.com, Inc.
241--

Detected Technologies1

40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ADB484C61230638CA8CD9AAEDF6EFD94101E70EFB5F6C5C55A5B8B48A44FAC4FA44C50

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:8QgK+L8jYfHzj+Y0P05C/hiqiXvlSzlTRT839rtnPUMKUyn9QHfgSg1Ck+YOQyWG:H2pnsM7ywy5OQhaEI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:500000:YIQXAZAByRuqpAHjBEBgxBtAqGICMLIQxARHBSIiSQCCQHTlMTlAAamHyuTEmKBAGDgAZBdSHMAILQJgR5g3VGhAw0kwwIg2

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7cfefc7c3fff7
Perceptual Hash:b399ce66cc983199
Difference Hash:00081c141c0c0806
Wavelet Hash:fee7c3c3c2c2c600
Color Hash:#291f93

Other Hashes

Crop Resistant:00081c141c0c0806

Scan History

Scan history not available

Unable to load historical scan data