Security Scan Report: maxfel.se

Submitted: Oct 1, 2026, 4:57:29 PMCompleted: Oct 1, 2026, 4:58:24 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Swedish SEO-spam page with a CRITICAL EtherHiding malware IDS alert and blockchain RPC connection (polygon.drpc.org), plus a malware-flagged external resource. High-risk malware distribution — avoid.

Risk Factors (5)
CRITICAL IDS malware alert (EtherHiding exfiltration)
Blockchain RPC connection to polygon.drpc.org (wallet-drainer / EtherHiding indicator)
Malware-tagged external resource assetwaveapp.com loaded (2 corroborated feeds)
Parasite/SEO-spam gambling content in many unrelated languages
No legitimate business content, no forms, no transparency
Domain age information unavailable

Details

Page Title

Smakar din Pepsi Max konstigt? Maxfel.se hjälper dig! - Zero taste. Full irritation.

Scan Type

public

Domain Name Analysis

The domain name 'maxfel.se' uses the Swedish country-code top-level domain (.se). The registrable portion 'maxfel' spans 6 characters holding 2 vowels versus 4 consonants. Splitting it apart reveals 3 words: max, f, el. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://maxfel.se/

Page Load Overview

2.67s
Total Load Time
392 KB
Total Size

Language Analysis

Primary Language

🇸🇪Swedish
Code: sv
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:sv-SE
Text Length:4,549 chars
Detector Agreement:50%

Website Classification

Primary Category

gambling betting100% confidence
Type: spa
Method: ml+structural

All Detected Categories

gambling betting
100%
finance banking
99%
education learning
98%
entertainment media
97%
documentation technical
82%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
965.21.122.251Helsinki, Uusimaa, Finland
AS24940Hetzner Online GmbH
3192.178.183.97Google · CDNUnited States
AS15169Google LLC
3192.0.77.48San Francisco, California, United States
AS2635Automattic, Inc
3216.239.34.36Google · CDNUnited States
AS15169Google LLC
3104.18.11.59Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3149.56.95.166Montreal, Quebec, Canada
AS16276OVH SAS
3216.239.32.36Google · CDNUnited States
AS15169Google LLC
277--

Detected Technologies8

WordPressv7.1.2
100%
JQueryv3.7.1
100%
100%
50%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18C334B72A37D08AAAB7E47A88C7A730CF97A54319F41D56AF0FB740444989F102E375D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:l/yZWOVAw7xWXypGfA8q1niEIGlErm5Qq5fjgiaRs:0ZNVAw9WikfA8q1niEIGlf5Qq5fy+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:53108:NmA0khcDEIAYBYxEhLyhC2CCcRCARQlryvSgxqGCJwAJUAaKSBEbJUQWFipBgEQCCAKSAi8QKa3AaCguBiAItUgYgAgJQweQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c787c383c3c7c7cf
Perceptual Hash:bc7592cacd3286c3
Difference Hash:2e3e3e3e363e1f3e
Wavelet Hash:c387c383c38783cf
Color Hash:#2d8649

Other Hashes

Crop Resistant:2e3e3e3e363e1f3e

Scan History

Scan history not available

Unable to load historical scan data