Security Scan Report: effecterectz.xyz

Redirected to:
https://www.noticeofpleadings.net/lumma/domainseizurenotice.htm
Submitted: Sep 12, 2026, 8:47:37 PMCompleted: Sep 12, 2026, 8:48:23 PMpubliccompleted

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 2 HTTP transactions. The main domain is noticeofpleadings.net and was registered 1 year 9 months ago.

Submitted URL: https://effecterectz.xyz

Effective URL: https://www.noticeofpleadings.net/lumma/domainseizurenotice.htmRedirected

AI Security Verdict

Confirmed Scam

Confidence: 93%

9
Risk Score

Entry domain effecterectz.xyz is a confirmed Lumma Stealer C2 (multi-feed threat-intel plus two CRITICAL IDS alerts) and serves a Microsoft-branded fake seizure notice. Malware C2 + brand impersonation = CONFIRMED_SCAM.

Risk Factors
Multi-source threat-intel match identifying the domain as Lumma Stealer (lummac2) command-and-control infrastructure
Two CRITICAL network IDS alerts flagging Lumma Stealer C2 activity (DNS lookup and TLS SNI)
Uses Microsoft branding/legal-notice impersonation on a domain not belonging to Microsoft
Cross-domain redirect to an unrelated host (noticeofpleadings.net) serving the notice content
Domain age information unavailable

Details

Page Title

This website domain has been seized by Microsoft

Scan Type

public

Language

🇺🇸

English

(56% confidence)

Category

technology software

(71%)

Domain Information

The domain name 'effecterectz.xyz' uses the open generic top-level domain (.xyz) without a subdomain. The second-level label 'effecterectz' is 12 characters long split between 4 vowels and 8 consonants. Breaking it apart gives three words: effect, erect, z. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://effecterectz.xyz

Page Load Overview

25.95s
Total Load Time
12
HTTP Requests
2
Domains
2.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:56%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:56%
Script Type:Latin
Text Length:1,000 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software71% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
71%
corporate business
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
640.91.108.115Azure · CLOUDUnited States
AS8075Microsoft Corporation
6150.171.109.193Azure · CLOUDUnited States
AS8075Microsoft Corporation
122--

Page Statistics

12
Requests
2
Unique Domains
2.7 MB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CFA17601E5D5762BB04284C056273FA53BC84107C36E89A4B5E563AD1FC7CD6C6B3798

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:qewe5LfAnARZab+1wJDkev3oa5Zwj3yAWuo6OXpryDv8UV3m:qeBtfPRd6wa5XI8UV2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4766:AMAABIFgBiABCeAICjAgEIAWAlIIQBAgAAAAACAKIYIgAEEgggwgQDBAgAJcIKJBAmBAAEIQgACAAQwCwQRAYgLIgRBgQAPg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e700ff0fffffffff
Perceptual Hash:b33266e6b2b3a2c4
Difference Hash:0c22313900080008
Wavelet Hash:e7000000ffffff81
Color Hash:#c58a87

Scan History

Scan history not available

Unable to load historical scan data