Security Scan Report: scan-72-00.shadowserver.org

Submitted: Jan 18, 2026, 1:15:30 AMCompleted: Jan 18, 2026, 1:17:13 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is scan-72-00.shadowserver.org and was registered NaN years ago.

Submitted URL: https://scan-72-00.shadowserver.org

The Cisco Umbrella rank of the primary domain is #59,117 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Site is hosted on a known malicious IP; treat as high risk and do not use.

Risk Factors
Malicious IP address 65.49.1.162 associated with known attacker
Domain age information unavailable

Details

Page Title

scan-72-00.shadowserver.org

Scan Type

public

Language

🇺🇸

English

(62% confidence)

Category

technology software

(28%)

Domain Information

Domain 'scan-72-00.shadowserver.org' uses the non-profit oriented generic top-level domain (.org) with subdomain 'scan-72-00'. The core label 'shadowserver' covers 12 characters holding 4 vowels versus 8 consonants. Word splitting yields two words: shadow, server. Expect six characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://scan-72-00.shadowserver.org

Page Load Overview

0.23s
Total Load Time
2
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:62%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:62%
Script Type:Latin
Text Length:141 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software28% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
28%
cryptocurrency blockchain
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
265.49.1.162United States
AS6939HURRICANE
21--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13D048F77329A063986558498F05B43099F20B143F506C9BCB9BCBAD9BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:4fQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIszO2bMy8Oldk:zhoC9JSqzzbs6o3Sj3gcrsK2eAq

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:184526:AQ4PAAFz1IUhJQYAIAHMSQQohRhAFOELEWhIoKCK4wU00DsEQZThiCX/iQLhAWEIHgoNEq0puAAcLgQC5qgJQyEqAEACEJsI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfc7c7ffffffff
Perceptual Hash:b331cccccc273333
Difference Hash:00180c1400000000
Wavelet Hash:ffdfc3cf00000000
Color Hash:#2d9ed2

Other Hashes

Crop Resistant:00180c1400000000

Scan History

Scan history not available

Unable to load historical scan data