Security Scan Report: xn--j1am8a.xn--k1afg2e.xn--p1acf

Redirected to:
https://try-ondrela.com/ondrela/product?vndr=evf&evf=1&offid=98&affili...
Site favicon
Submitted: Aug 9, 2026, 9:51:25 PMCompleted: Aug 9, 2026, 9:53:51 PMpubliccompleted

Summary

This website contacted 2 IPs in 2 countries across 9 domains to perform 2 HTTP transactions. The main domain is try-ondrela.com and was registered 2 months ago.

Submitted URL: https://xn--j1am8a.xn--k1afg2e.xn--p1acf/SUetbq/

Effective URL: https://try-ondrela.com/ondrela/product?vndr=evf&evf=1&offid=98&affiliate_id=259&subid5=d0841f31b63244e1bd33ba758e8342f32c38b&source_id=208185_&sub4=&sub2=208185_Redirected

AI Security Verdict

Low Risk

Confidence: 82%

3
Risk Score

New site with self‑branding, no credential collection, and no threat intel hits; low risk overall.

Risk Factors
High JavaScript obfuscation score (static analysis shows heavy concatenation and base64 encoding)
Safety Factors
Self‑branding aligns with domain name
No forms collecting credentials or payments
No external threat intelligence hits or IDS alerts
Domain age information unavailable

Details

Page Title

Zeitlich begrenzte Aktion: 70 % Rabatt auf Ondrela! | Ondrela

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

finance banking

(84%)

Domain Information

The domain name 'xn--j1am8a.xn--k1afg2e.xn--p1acf' uses the .xn--p1acf top-level domain with subdomain 'xn--j1am8a'. The registrable portion 'xn--k1afg2e' spans 11 characters holding two vowels versus five consonants, plus two digits and two hyphens. Segmentation suggests seven words: xn, k, 1, a, fg, 2, e. Average segment length settles at 1 character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of browser.sentry-cdn.com

Page Load Overview

0.62s
Total Load Time
4
HTTP Requests
9
Domains
N/A
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:8,244 chars
Detector Agreement:75%

Website Classification

Primary Category

finance banking84% confidence
Type: spa
Method: ml+structural

All Detected Categories

finance banking
84%
phishing scam
65%
adult content
65%
government public service
65%
e-commerce shopping
59%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2138.68.137.67Slough, England, United Kingdom
AS14061DigitalOcean, LLC
2188.114.96.3Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
42--

Page Statistics

4
Requests
2
Unique Domains
23.6 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T138745C76957D202F8C1386EC9F68395E6A1DA0EFE26DC4D4B28C07107F96DD38D0BA64

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:Hv4fQVlrMMwTiLQdeX8XQEUveq9YUUagfpuF+upkirz7i3iEhMXpIQSA4:HcQLrMMw0zemYUpqkguzz7qiS+p7S3

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:364573:gAwgmA0MCJYBFAAgnCABYBkEUYBICxYBAEo0YTIxAAAEMmtgEfy5NIjGhSjRg6EElAMCjluFhBAbQDADkBAtJChhQDApgOAh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870f0f0f0f0f0f0f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#862d52

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data