Security Scan Report: xdownloaderv2razqadevss-iulrldzhg5.edgeone.app

Submitted: Apr 1, 2026, 6:44:23 AMCompleted: Apr 1, 2026, 6:45:33 AMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 3 countries across 8 domains to perform 1 HTTP transaction. The main domain is xdownloaderv2razqadevss-iulrldzhg5.edgeone.app and was registered NaN years ago.

Submitted URL: https://xdownloaderv2razqadevss-iulrldzhg5.edgeone.app/

The Cisco Umbrella rank of the primary domain is #455,732 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 85%

3
Risk Score

Site shows low risk but is brand‑new and heavily obfuscated; proceed cautiously.

Risk Factors
Newly registered subdomain on a free hosting platform
Critical JavaScript obfuscation score (high entropy, concatenation, bracket notation abuse)
Safety Factors
No credential or payment forms present
No malicious Indicators of Compromise detected
Uses reputable external resources (cdn.tailwindcss.com, cdnjs.cloudflare.com, fonts.googleapis.com, github.com)
No cross‑origin credential exfiltration observed
Domain age information unavailable

Details

Page Title

X17 ULTRA DOWNLOADER

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

documentation technical

(86%)

Domain Information

The domain name 'xdownloaderv2razqadevss-iulrldzhg5.edgeone.app' uses the application-focused generic top-level domain (.app) with subdomain 'xdownloaderv2razqadevss-iulrldzhg5'. Its registrable label 'edgeone' stretches across 7 characters containing 4 vowels alongside 3 consonants. Tokenizing the label suggests two words: edge, one. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xdownloaderv2razqadevss-iulrldzhg5.edgeone.app/

Page Load Overview

1.33s
Total Load Time
44
HTTP Requests
9
Domains
124 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:2,628 chars
Detector Agreement:67%

Website Classification

Primary Category

documentation technical86% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
86%
technology software
63%
government public service
33%
cryptocurrency blockchain
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9104.17.25.14United States
AS13335Cloudflare, Inc.
5142.251.110.95Singapore
5104.26.12.204United States
AS13335Cloudflare, Inc.
5140.82.121.4Frankfurt am Main, Hesse, Germany
AS36459GitHub, Inc.
5104.26.2.143United States
AS13335Cloudflare, Inc.
5142.251.127.94United States
AS15169Google LLC
543.152.26.58Singapore
5104.18.28.104United States
AS13335Cloudflare, Inc.
448--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T195430C2531E214361EA384F6F39BAB8CB41AA247DE16C6EAB6DD41011FC3EF19C97354

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:OFQhnmIcgR9a0mCiLSUZ+Ct9HIposxHM2QEDATplP0EEDeviKY5:ThmIVmCi1dTqDeDY5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:59167:QAAVNwhGAMpIABBSADACFsxhKCEv3NZFGc4ETkHWBoMIR8B55FBGKQaIU4FionGESODACCrAEQAwCm8EkACUFQgIgABgCCio

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00181c1018180000
Perceptual Hash:9999666666669999
Difference Hash:30323a2432320c00
Wavelet Hash:983c3c3c3c3c1800
Color Hash:#79d2cb

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data