Security Scan Report: 1ty.me

Site favicon
Submitted: Sep 12, 2026, 6:14:09 PMCompleted: Sep 12, 2026, 6:15:34 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 65%

7
Risk Score

Page itself is clean (no forms, own brand, no YARA/exfiltration), but the primary domain matches an unverified, single-source malware-family Indicator of Compromise, which mandates a high-risk rating.

Risk Factors
Primary domain flagged in threat intelligence as associated with the diamondfox/qdoor malware family
Single-source, uncorroborated Indicator of Compromise requires cautious handling
Domain age information unavailable

Details

Page Title

1ty.me - One Time Self Destructing Links For Sharing Sensitive Information

Scan Type

public

Domain Name Analysis

Domain '1ty.me' uses the Montenegrin country-code top-level domain (.me) while skipping any subdomain. The second-level label '1ty' is 3 characters long containing zero vowels alongside two consonants, plus 1 digit. Word splitting yields 2 words: 1, ty. Median word length is 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://1ty.me

Page Load Overview

18.18s
Total Load Time
114 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:59%
Script:Latin
Direction:ltr

Detection Details

Text Length:1,293 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7192.228.101.184Las Vegas, Nevada, United States
AS53340VegasNAP, LLC
1104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1173.201.249.4United States
AS398101GoDaddy.com, LLC
1142.251.13.95Google · CDNUnited States
AS15169Google LLC
1142.251.20.95Google · CDNUnited States
AS15169Google LLC
1104.18.10.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.20.97Google · CDNUnited States
AS15169Google LLC
137--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14C22C71140CD5E3F111542C5F07AEACA61DF9E36E75688D5F6FF0973AAC2C8276220B9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:sHoIYJSzNZ2ybx7G2+h5ybW7ON+hCyby7G+hgy1VnXo/nociZnKc54dl/thqw:sIIYJw1q2+hRSN+h8S+hgyj4viZLW/t1

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:10337:lAIigak0lZJg2l0yMLEgWeCRoAgQkJ4VAAMAoQiDhsUADShIAYm1KgYMCAJhVgKmkCzRJQiDsChEbApaMQolcLI7ZGGiEDBQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffffff0000
Perceptual Hash:e3be12634318eb63
Difference Hash:c92e3f320bc3d002
Wavelet Hash:00c7ffffe3f30000
Color Hash:#5c2d86

Scan History

Scan history not available

Unable to load historical scan data