Security Scan Report: ayeshajamil.sheraniz.com

Redirected to: https://um-records.com/?cid=Nzk5NjIx

Submitted: Oct 13, 2025, 10:39:02 AMCompleted: Oct 13, 2025, 10:41:46 AMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 4 domains to perform 36 HTTP transactions. The main domain is um-records.com and was registered NaN years ago.

Submitted URL: http://ayeshajamil.sheraniz.com/wp-content/plugins/wp-kenneth-access/index.php?r=bD1odHRwczovL3VtLXJlY29yZHMuY29tLz9jaWQ9TnprNU5qSXg

Effective URL: https://um-records.com/?cid=Nzk5NjIxRedirected

AI Security Verdict

Low Risk

Confidence: 75%

3
Risk Score

Site shows no credential collection but is a newly registered compromised WordPress site; proceed carefully.

Risk Factors
Compromised WordPress site may host malicious content or be used for future phishing
Very new, unranked domain increases likelihood of abuse
Safety Factors
No password, email, or payment fields detected on the page
No malicious Indicators of Compromise matches found
Domain age information unavailable

Details

Page Title

ayeshajamil.sheraniz.com

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

documentation technical

(96%)

Domain Information

Domain 'ayeshajamil.sheraniz.com' uses the commercial generic top-level domain (.com), featuring subdomain 'ayeshajamil'. Its registrable label 'sheraniz' stretches across 8 characters holding three vowels versus five consonants. Segmentation suggests four words: s, her, a, niz. Median word length comes out to two characters. 's' is most common in Hungarian usage. You will also see it in Galician and Portuguese contexts. Overall, 'ayeshajamil.sheraniz.com' reads as Hungarian.

Screenshot

Security scan screenshot of http://ayeshajamil.sheraniz.com/wp-content/plugins/wp-kenneth-access/index.php?r=bD1odHRwczovL3VtLXJlY29yZHMuY29tLz9jaWQ9TnprNU5qSXg

Page Load Overview

2.31s
Total Load Time
36
HTTP Requests
4
Domains
3.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:4,303 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical96% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

documentation technical
96%
entertainment media
90%
adult content
71%
education learning
55%
government public service
48%

Detected Features

Search
Comments

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
30193.233.175.104Russia
AS215590DpkgSoft International Limited
4142.250.181.227United States
AS15169GOOGLE
4142.250.184.234United States
AS15169GOOGLE
4142.250.184.202United States
AS15169GOOGLE
42a00:1450:4001:82f::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
42a00:1450:4001:80b::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
2142.250.186.163United States
AS15169GOOGLE
2173.224.122.251St Louis, Missouri, United States
AS30083AS-30083-US-VELIA-NET
1172.217.23.106United States
AS15169GOOGLE
369--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T159638420C4F52CA3903E93D5A675673A2D93A207D6021A1876FCB3584BC7C9B987F9CD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:P6apn5TD4k4/qP+7lDDshc8aGzDhLlKYY1frL:Fx5TD4k47N1frL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:69115:MACuQI0FIE6BMSmJIawRIAiBJAI2yAQ8IMwdoRKAAKhEsAFISmysJkbCDYsABCVpERIQ7YgAAkggWAAaCwEcgnFCGlrIo2AA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data