Security Scan Report: mirvok.vu

Submitted: Sep 28, 2026, 8:04:42 AMCompleted: Sep 28, 2026, 8:05:18 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Threat-intel flags domain as APT MuddyWater malware across multiple feeds. Page is a generic Bootstrap template with filler text, likely compromised. Avoid interaction despite no forms detected.

Risk Factors (5)
Multi-source threat-intel match on the primary domain as APT MuddyWater malware
Host IP flagged as a malicious host
Generic placeholder template content inconsistent with the claimed spa/wellness business
Domain age 222 days and unranked in Cisco Umbrella
Likely compromised or maliciously repurposed domain
Domain age information unavailable

Details

Page Title

Energen - Free Bootstrap 4 Template by Colorlib

Scan Type

public

Domain Name Analysis

You're looking at domain 'mirvok.vu' on the .vu country-code top-level domain without a subdomain. The registrable portion 'mirvok' spans 6 characters holding 2 vowels versus four consonants. Splitting it apart reveals two words: mirv, ok. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mirvok.vu/

Page Load Overview

2.57s
Total Load Time
1.8 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:5,460 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical74% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

healthcare medical
74%
adult content
38%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12185.221.216.121London, England, United Kingdom
AS393960Host4Geeks LLC
8192.178.183.95Google · CDNUnited States
AS15169Google LLC
8172.217.116.4Google · CDNUnited States
AS15169Google LLC
8142.251.14.94Google · CDNUnited States
AS15169Google LLC
8172.217.118.4Google · CDNUnited States
AS15169Google LLC
8172.217.112.4Google · CDNUnited States
AS15169Google LLC
8172.217.113.4Google · CDNUnited States
AS15169Google LLC
607--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10E131B3093FD193F216382C675646B1AA9F6DA37EA17428172FF07893FC7D81A853168

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:2L1aQNV7etO1etOMetOVADtOHUtOlWtO2vtOTyZrtorxarRYrbYTbiV4biV6JeVm:SwYbiV4biVitlKQ7IIIIkUVMk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:43679:BNIlNYAiZgRAAokqEdwijgRslmGxPJIqCFsYQLKUCQV0ciiKAQOqACKMMyhFYVcyVBqmACgscA4gSy4IRcwYADQUFaKoQBwZ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e2ffffc3c7e7ffff
Perceptual Hash:f34ccc33644c33d3
Difference Hash:260008060e080008
Wavelet Hash:80fee6c202263e3e
Color Hash:#1f937e

Other Hashes

Crop Resistant:260008060e080008

Scan History

Scan history not available

Unable to load historical scan data