Security Scan Report: cabusadame.z6.web.core.windows.net

Redirected to: https://cabusadame.z6.web.core.windows.net/mw42ekkmvuai.html

Submitted: Mar 15, 2026, 5:36:45 PMCompleted: Mar 15, 2026, 5:38:00 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 3 domains to perform 1 HTTP transaction. The main domain is cabusadame.z6.web.core.windows.net and was registered NaN years ago.

Submitted URL: http://cabusadame.z6.web.core.windows.net

Effective URL: https://cabusadame.z6.web.core.windows.net/mw42ekkmvuai.htmlRedirected

The Cisco Umbrella rank of the primary domain is #44 of the top 1 million websitesTop 100 Site

AI Security Verdict

High Risk

Confidence: 82%

7
Risk Score

Site flagged for social engineering; likely phishing – do not provide any information.

Risk Factors
Social engineering detection by Google Safe Browsing
Subdomain on a cloud storage platform with unknown age
Outbound links to suspicious external domains (iplog.co, realslimshady.net)
Right‑click disabled via JavaScript
Domain age information unavailable

Details

Page Title

検出 CODE-YJ1VJ

Scan Type

public

Language

🇺🇸

English

(37% confidence)

Category

healthcare medical

(79%)

Domain Information

The domain name 'cabusadame.z6.web.core.windows.net' uses the network infrastructure generic top-level domain (.net), featuring subdomain 'cabusadame.z6.web.core'. The core label 'windows' covers 7 characters split between 2 vowels and five consonants. Breaking it apart gives one word: windows. Median word length comes out to seven characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://cabusadame.z6.web.core.windows.net

Page Load Overview

1.39s
Total Load Time
27
HTTP Requests
3
Domains
487 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:37%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:37%
Script Type:Latin
HTML Lang Attribute:ar
Text Length:55,463 chars
Detector Agreement:67%
Language mismatch: Declared as ar but detected as en

Website Classification

Primary Category

healthcare medical79% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

healthcare medical
79%
cryptocurrency blockchain
69%
technology software
64%
documentation technical
60%
news media journalism
57%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14188.114.97.3United States
AS13335Cloudflare, Inc.
1320.209.73.206Amsterdam, North Holland, Netherlands
AS8075Microsoft Corporation
272--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17793AE29F3DC1D36011352A976E6E3CD193F8E3BC5150880363F827A6FE6C68A5165BE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:hGrw38ovr5JqM+eMvoLgGSGqYpIrYKkksc/6P4Xr36OhrKKpRYCQOsFblTm8HjLJ:8rlEcTG5I1xKGRBQ5y8HjML1oX5oGyLE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:94620:SQHaSkptpVXLIC4MQCcUAIiSS8QiwE2BihhYQBhAwcU2QheKhC7UEYAZdVCMhA7aiImAggKICZAm5JWUylqrkkEUAIBOKAAY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:283c3c3c3c3c0101
Perceptual Hash:cbd730c37428d53c
Difference Hash:c9c9e1e1e1e1fbb3
Wavelet Hash:3c3c7c7c3c7c3901
Color Hash:#40bf44

Scan History

Scan history not available

Unable to load historical scan data