Security Scan Report: sp735986.sitebeat.crazydomains.com

Submitted: Nov 20, 2025, 11:43:57 AMCompleted: Nov 20, 2025, 11:46:33 AMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 2 countries across 4 domains to perform 28 HTTP transactions. The main domain is sp735986.sitebeat.crazydomains.com.

Submitted URL: https://sp735986.sitebeat.crazydomains.com/

The Cisco Umbrella rank of the primary domain is #481,468 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

High‑risk credential‑harvesting page; likely phishing

Risk Factors
Credential‑harvesting form with disguised password input
Hidden password field enabling covert data capture
Unicode characters used to evade detection
Password field presented without a username field
Domain has low Cisco Umbrella ranking (481,468) and appears newly registered
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

Domain 'sp735986.sitebeat.crazydomains.com' uses the commercial generic top-level domain (.com), featuring subdomain 'sp735986.sitebeat'. Its registrable label 'crazydomains' stretches across 12 characters containing four vowels alongside eight consonants. Segmentation suggests 2 words: crazy, domains. Expect six characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sp735986.sitebeat.crazydomains.com/

Page Load Overview

4.59s
Total Load Time
28
HTTP Requests
4
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,001 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
24103.67.235.120Perth, Western Australia, Australia
AS38719Dreamscape Networks Limited
6172.66.160.115United States
AS13335CLOUDFLARENET
234.117.140.48Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
2104.26.7.16United States
AS13335CLOUDFLARENET
22606:4700:20::681a:610United States
AS13335CLOUDFLARENET
2104.26.6.16United States
AS13335CLOUDFLARENET
22606:4700:10::6814:255bUnited States
AS13335CLOUDFLARENET
22606:4700:10::ac42:a073United States
AS13335CLOUDFLARENET
22606:4700:20::ac43:463cUnited States
AS13335CLOUDFLARENET
22606:4700:20::681a:710United States
AS13335CLOUDFLARENET
2812--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1688352A1941B1001B28B1DDE33CEBB19A61DA34BA840DA257BFC279C6FDDD7A027171D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:nSP7g7KsWYqEuUrDR4Nw75777u7L7ptfC/FFHKX9N/ifldvSPVN/iflFHKX9dvS+:PhX4CNsNhRq43

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:82649:GGSQAZBQYIY6UMqxKFitMKFEhtEASACcKwIYDWNBMRaPACwmiQpUgIZYiABhCAgRbQIYqwoSQyLIIAEioMAERTGUQ0M0W0lk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data