Security Scan Report: urlz.fr

Redirected to:
https://cd078860.tw1.ru/sdnvdsag/sdnvdsag/sdnvdsag/pages/region.php?lc...
Submitted: Oct 15, 2025, 9:54:50 AMCompleted: Oct 15, 2025, 9:56:00 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 2 domains to perform 30 HTTP transactions. The main domain is cd078860.tw1.ru.

Submitted URL: https://urlz.fr/uSJm

Effective URL: https://cd078860.tw1.ru/sdnvdsag/sdnvdsag/sdnvdsag/pages/region.php?lcaRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam impersonating Crédit Agricole on a newly registered unranked domain.

Risk Factors
URL manipulation (history.pushState/replaceState spoofing)
Brand impersonation of a major bank on a newly registered domain
Unranked/low‑reputation domain (not in Cisco Umbrella top 1M)
Social engineering content prompting credential re‑entry
Google Safe Browsing social engineering detection
Domain age information unavailable

Details

Page Title

Accès CR - Crédit Agricole

Scan Type

public

Language

🇫🇷

French

(80% confidence)

Category

finance banking

(98%)

Domain Information

The domain name 'urlz.fr' uses the French country-code top-level domain (.fr) without a subdomain. Count 4 characters in 'urlz' holding one vowel versus 3 consonants. Segmentation suggests two words: url, z. Median word length is two characters. 'z' most often appears in Polish. You will also see it in Slovenian and Malay contexts. Overall, 'urlz.fr' reads as Polish.

Screenshot

Security scan screenshot of https://urlz.fr/uSJm

Page Load Overview

42.66s
Total Load Time
30
HTTP Requests
2
Domains
419 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:fr
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:fr
Text Length:4,921 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking98% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
98%
real estate property
90%
government public service
82%
blog personal website
68%
technology software
61%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
592.53.96.105Russia
AS9123Jsc timeweb
5104.21.91.223United States
AS13335CLOUDFLARENET
52606:4700:3031::6815:5bdfUnited States
AS13335CLOUDFLARENET
52606:4700:3037::ac43:b4d3United States
AS13335CLOUDFLARENET
52a03:6f00:1::5c35:6069St Petersburg, St.-Petersburg, Russia
AS9123Jsc timeweb
5172.67.180.211United States
AS13335CLOUDFLARENET
306--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F463A6338050043B83F721E5E6E04F2B6DF6CB5BCA06951096F483EA57E3D62F98B569

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:BkA5XMhXf+vwqJY/ZDBCnjr+WPP2AA8dffhShwb4M8B/zyCG:+A5XQXf+vwqJY/ZDBCnjrdZbdfohYCG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:67042:pADgpGkYiLI4MakAA0lTSgwooAJgA1iMk4sNBAZA0QIBAAICAUKEoYhCZwDBEItGQNoKvCAFAkEAQRbDcFBgYCpKgSSTpp4Y

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff0f0f0f0f0f0f4f
Perceptual Hash:9bcef0c4c415cf49
Difference Hash:d85b5b7c3b3b189a
Wavelet Hash:fe0f0d0f090f0f0f
Color Hash:#a2e06c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data