Security Scan Report: dpd-ptrsva.cfd

Site favicon
Submitted: Dec 11, 2025, 12:35:29 AMCompleted: Dec 11, 2025, 12:36:50 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 2 domains to perform 52 HTTP transactions. The main domain is dpd-ptrsva.cfd and was registered NaN years ago.

Submitted URL: https://dpd-ptrsva.cfd/ptr

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Confirmed phishing scam targeting DPD customers; do not trust or provide any information.

Risk Factors
Known malicious indicator (phishing URL)
Social engineering warning from Google Safe Browsing
Brand impersonation on a newly registered domain
Critical domain age (1 day old) with no reputation
Unranked domain lacking established trust
Domain age information unavailable

Details

Page Title

DPD - Envio de encomendas para clientes empresariais e particulares » DPD

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate business

(36%)

Domain Information

Within the .cfd top-level domain, 'dpd-ptrsva.cfd' is registered and has no subdomain. Count 10 characters in 'dpd-ptrsva' containing one vowel alongside 8 consonants; bonus characters include 1 hyphen. Segmentation suggests four words: d, pd, ptr, sva. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://dpd-ptrsva.cfd/ptr

Page Load Overview

17.56s
Total Load Time
52
HTTP Requests
2
Domains
2.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:80 chars
Detector Agreement:67%

Website Classification

Primary Category

corporate business36% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

corporate business
36%
phishing/scam
20%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1243.165.197.107Jakarta, Jakarta, Indonesia
AS132203Tencent Building, Kejizhongyi Avenue
10104.18.180.27United States
AS13335CLOUDFLARENET
102606:4700::6812:b41bUnited States
AS13335CLOUDFLARENET
102606:4700::6812:b51bUnited States
AS13335CLOUDFLARENET
10104.18.181.27United States
AS13335CLOUDFLARENET
525--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12CE3327174A1111B0A7BD0CB62AC750B1A13FA0FD626CDCE715C92284FDEAAF34E2759

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:N6H0RhAsTFwpG3czDtBTDl/xX1Ac1oQeiXMY0EHZ77kDIf/La+HI5KSEiMM:NY0RhAsTFwpG3czDtBTDl/x1Ac1oQeiM

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:154254:CECBDAkgEkoGN2KAEqCjBoNSKBAgAgYU6JHS0bwBmALAUBONIABgI4yIY6KQEKKEJIoYAA1EACGZBhEQQCSkaMiEALRABYkG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:efc7efffe7e70000
Perceptual Hash:b3b109a6ccccce4e
Difference Hash:1c9e1e1a0e0c331b
Wavelet Hash:c7c3c7efe7c70000
Color Hash:#1f9327

Scan History

Scan history not available

Unable to load historical scan data