Security Scan Report: 9ej64ge.icu

Redirected to: https://9ej64ge.icu/aTeqe

Site favicon
Submitted: Dec 8, 2025, 3:07:59 PMCompleted: Dec 8, 2025, 3:08:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 2 domains to perform 7 HTTP transactions. The main domain is 9ej64ge.icu and was registered NaN years ago.

Submitted URL: https://9ej64ge.icu/x1w2ffby/bhBjtA/WhNXaD

Effective URL: https://9ej64ge.icu/aTeqeRedirected

AI Security Verdict

High Risk

Confidence: 80%

10
Risk Score

High‑risk phishing site; likely used to harvest credentials or redirect to malicious content.

Risk Factors
Brand‑new domain (<7 days old)
Unranked / low‑reputation domain
Suspicious verification page typical of credential‑harvesting flows
Domain age information unavailable

Details

Page Title

Einen Moment...

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

documentation technical

(42%)

Domain Information

The domain '9ej64ge.icu' uses the .icu top-level domain. Its registrable label '9ej64ge' stretches across 7 characters with two vowels and 2 consonants, along with three digits. It segments into 4 words: 9, ej, 64, ge. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://9ej64ge.icu/x1w2ffby/bhBjtA/WhNXaD

Page Load Overview

1.72s
Total Load Time
7
HTTP Requests
2
Domains
33 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:262 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical42% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
42%
real estate property
33%
technology software
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1142.250.185.138United States
AS15169GOOGLE
1188.114.96.3United States
AS13335CLOUDFLARENET
1188.114.97.3United States
AS13335CLOUDFLARENET
12a06:98c1:3120::3United States
AS13335CLOUDFLARENET
12a00:1450:400a:1009::5fZurich, Zurich, Switzerland
AS15169GOOGLE
12a06:98c1:3121::3United States
AS13335CLOUDFLARENET
76--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ECA26C362AE1202C6927C67F38E1EE0E5934D517D306477CFA6EB5104FC79492C6379A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:e0ljXE/Jkm6YRtJqP13snR7JGg5GlX/mc43y:1K/JkkqPen1Jz5yX+P3y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:21878:GJJBMkSQ9VBelBGAQOAEIKADCJkGQjCwxAAgEdJAlIIkooQEaFh4aoooMKY1gEhhDIAQEwqGAZIgiySqIFsrvGgmAqDAAUBA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f7c7cfc3ffffffff
Perceptual Hash:b838c3c7c7c7c318
Difference Hash:049490262000000c
Wavelet Hash:f8c0c8c0ccccfcc0
Color Hash:#6953ac

Other Hashes

Crop Resistant:049490262000000c

Scan History

Scan history not available

Unable to load historical scan data