Security Scan Report: www.fortivpn.download

Site favicon
Submitted: Sep 24, 2026, 4:14:50 PMCompleted: Sep 24, 2026, 4:15:26 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Unconfigured FASTPANEL placeholder on a 13-day-old, unranked domain whose IP appears Spamhaus-listed. No forms, phishing content, or malware, but the young VPN-styled domain warrants caution.

Risk Factors (3)
Very new domain (13 days old)
Domain name evokes a VPN brand on a non-official '.download' TLD
Hosting IP appears on the Spamhaus DROP list per IDS alert
Safety Factors (5)
No forms of any kind (0 password, 0 payment, 0 email fields)
No brand impersonation in the rendered content — title 'FASTPANEL' is the hosting panel's own default page
No Indicators of Compromise, YARA malware, or known malicious kit
No credential exfiltration or suspicious cross-origin behavior
Page content is a generic server-configuration placeholder, not a lure
Domain age information unavailable

Details

Page Title

FASTPANEL

Scan Type

public

Domain Name Analysis

You're looking at domain 'www.fortivpn.download' on the .download top-level domain with subdomain 'www'. Its registrable label 'fortivpn' stretches across 8 characters containing 2 vowels alongside 6 consonants. It segments into three words: for, ti, vpn. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.fortivpn.download

Page Load Overview

1.30s
Total Load Time
94 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:396 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content60% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

adult content
60%
technology software
58%
news media journalism
56%
healthcare medical
54%
documentation technical
49%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3158.94.209.214Amsterdam, North Holland, Netherlands
AS202412Omegatech LTD
1142.251.110.95Google · CDNUnited States
AS15169Google LLC
1142.251.110.94Google · CDNUnited States
AS15169Google LLC
53--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13C32B51D922838AF11EB4299F777B3EC503A4878C050425DB07B1969E257A93EA275FC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:MO0vOM7R1YehNAKU3IEjHmaZO4Bl0F1kwcvg/4fT0Cmjz+SdLw7Jg/K:MV6KU3IEZO4Bl0F1kwcvg/Q0Cmjz7dLs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11863:B8IucRG/glIEAhhtBNDAxMFAAZMSoYya2HD1OETgwEgZ4IAESIIJhEAYj4BCBLAAEDIAQUQsvQWMHeIjPgUgCBRyigiwgIig

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00143c3c3c3c3020
Perceptual Hash:cf38636338c798cc
Difference Hash:047c707070504060
Wavelet Hash:043e3e3e3c7c7c30
Color Hash:#783a3f

Other Hashes

Crop Resistant:047c707070504060

Scan History

Scan history not available

Unable to load historical scan data