Security Scan Report: wallet.elephant-blue.org

Submitted: Dec 20, 2025, 9:49:00 AMCompleted: Dec 20, 2025, 9:49:38 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 1 country across 10 domains to perform 91 HTTP transactions. The main domain is wallet.elephant-blue.org and was registered NaN years ago.

Submitted URL: https://wallet.elephant-blue.org

The Cisco Umbrella rank of the primary domain is #296,014 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

Site mimics Coinbase Wallet on an unrelated, low‑ranked domain; likely phishing.

Risk Factors
Brand impersonation/typosquatting on a low‑ranked domain
Domain does not match the official Coinbase brand domain
Domain age information unavailable

Details

Page Title

Coinbase Wallet

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'wallet.elephant-blue.org' uses the non-profit oriented generic top-level domain (.org) with subdomain 'wallet'. Its registrable label 'elephant-blue' stretches across 13 characters with 5 vowels and 7 consonants; it also includes 1 hyphen. Segmentation suggests two words: elephant, blue. Average segment length settles at six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://wallet.elephant-blue.org

Page Load Overview

7.56s
Total Load Time
91
HTTP Requests
10
Domains
348 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:15 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10172.64.152.241United States
AS13335CLOUDFLARENET
918.165.122.53United States
AS16509AMAZON-02
9104.18.35.15United States
AS13335CLOUDFLARENET
9104.20.35.94United States
AS13335CLOUDFLARENET
9184.72.105.205Ashburn, Virginia, United States
AS14618AMAZON-AES
9172.64.150.21United States
AS13335CLOUDFLARENET
9172.66.147.126United States
AS13335CLOUDFLARENET
93.174.113.2United States
AS16509AMAZON-02
93.174.113.11United States
AS16509AMAZON-02
9104.18.37.235United States
AS13335CLOUDFLARENET
9110--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T159D28532EF21D13063178E7F90559F9FB32BA512D6107059E3D10589B84BBA9DA93E33

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:c2IdB2K2bfUVA5r5E+oYZVbyYZNZvasU4RsF/ioJlB+dw4Ho7rC8TYSOpHoowIb0:2B2KisG5idY1U4RsF6oJlB+dw4qfWJ14

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:29073:3qIAEIo4ggFMQABcFQIpAIjF0kCMxAEqDhFoAMAQAdEbGBCAC2ltwBJCNDcVEMUiiIQIUEqFC4xFUUDUUwQDuIAoKCIEUhAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:b399cc263399cc66
Difference Hash:0000000808000000
Wavelet Hash:0c0c0c04273f0f0f
Color Hash:#4f3a78

Other Hashes

Crop Resistant:0000000808000000

Scan History

Scan history not available

Unable to load historical scan data