Security Scan Report: shadeeselim.com

Redirected to:
https://www.shadeeselim.com/
Site favicon
Submitted: Oct 8, 2026, 11:55:30 PMCompleted: Oct 8, 2026, 11:56:20 PMpubliccompleted

This website contacted 12 IPs in 2 countries across 9 domains to perform 24 HTTP transactions. The main domain is shadeeselim.com and was registered 1 day ago.

Submitted URL: https://shadeeselim.com

Effective URL:

https://www.shadeeselim.com/
Redirected

AI Security Verdict

High Risk

Confidence: 87%

8
Risk Score

Established WordPress artist portfolio that appears compromised: it loads a multi-feed malicious domain and uses blockchain-RPC C2 (EtherHiding) per 5 critical malware IDS alerts. Do not interact.

Risk Factors (5)
CRITICAL malware IDS alerts indicating blockchain-based C2/exfiltration (EtherHiding)
Page loads a third-party domain (checkyoubrowse.codes) corroborated as malicious by multiple feeds
Primary domain carries a malware threat-intel indicator
Scripts connect to Ethereum/Polygon RPC nodes with no legitimate site purpose
Function() code-generation/obfuscation present on a low-complexity portfolio page
Domain age information unavailable

Details

Page Title

Shadee Selim – Artist, Teacher and Musician

Scan Type

public

Domain Name Analysis

You're looking at domain 'shadeeselim.com' on the commercial generic top-level domain (.com) and has no subdomain. The registrable portion 'shadeeselim' spans 11 characters with 5 vowels and six consonants. Splitting it apart reveals three words: shade, e, selim. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://shadeeselim.com

Page Load Overview

13.93s
Total Load Time
607 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:1,251 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content33% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

adult content
33%
education learning
27%

Detected Features

Search
Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
269.163.178.28Hillsboro, Oregon, United States
AS26347New Dream Network, LLC
2142.251.13.95Google · CDNUnited States
AS15169Google LLC
2104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.66.164.193Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2104.20.24.117Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2178.16.52.101Frankfurt am Main, Hesse, Germany
AS202412Omegatech LTD
2192.178.183.94Google · CDNUnited States
AS15169Google LLC
2104.20.46.180Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2412--

Detected Technologies6

WordPressv6.3.13
100%
JQueryv3.7.0
100%
50%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17F4331A36384037BF3894DD4A159721B52F2E10BB820219DFBE366EFF428D967435636

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:gmrjooZ0WDXy0a390DZdapNT52oSW2Jw3+/qoSPJEQ5eXyrT+yw/3yrT+yw/+:1r0oZPXTap5YoSFJw3+/qoSPJTd

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:58746:AAaFTHQDTgQBsAuCnCeIUcwWQFDiyAgrgiicM5MgAigmQRABtg6viUgXAgAsBbkA0AgBbMAsHBAESysKBnw4AGAXPDlPmOOI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:007c6c6c6c6c6c78
Perceptual Hash:c33c6c3e2e336338
Difference Hash:89d0d8c9d9c9d9c9
Wavelet Hash:007e7c7c4c7c6c78
Color Hash:#8c40bf

Scan History

Scan history not available

Unable to load historical scan data