Security Scan Report: www.dancesportacademy.nl

Site favicon
Submitted: Sep 13, 2026, 5:47:56 PMCompleted: Sep 13, 2026, 5:49:44 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 65%

7
Risk Score

Established self-branded Dutch dance school, but its primary domain is flagged with a Gootloader malware indicator and the page shows a disguised password field with Unicode evasion. Single-source, unverified — treat as potentially compromised and avoid entering data.

Risk Factors
Gootloader (malware) indicator on the PRIMARY domain of the scanned page — single-source and unverified, but a named malware family rather than a generic abuse tag
Disguised password field (text-type field posing as password) plus Unicode confusion in form inputs
Compromised-legitimate-site pattern: Gootloader is typically injected into otherwise harmless sites, so clean visible content does not clear the domain
Domain age information unavailable

Details

Page Title

DanceSportAcademy - DanceSport Academy

Scan Type

public

Domain Name Analysis

Domain 'www.dancesportacademy.nl' uses the Dutch country-code top-level domain (.nl) with subdomain 'www'. Count 17 characters in 'dancesportacademy' with 6 vowels and eleven consonants. Breaking it apart gives 3 words: dance, sport, academy. Expect five characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.dancesportacademy.nl

Page Load Overview

40.76s
Total Load Time
9.6 MB
Total Size

Language Analysis

Primary Language

🇳🇱Dutch
Code: nl
Confidence:46%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:3,355 chars
Detector Agreement:75%
Language mismatch: Declared as en-US but detected as nl

Website Classification

Primary Category

documentation technical91% confidence
Type: spa
Method: ml+structural

All Detected Categories

documentation technical
91%
education learning
51%
adult content
42%
corporate
35%

Detected Features

Search
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
36172.217.208.95Google · CDNUnited States
AS15169Google LLC
4142.251.151.119Google · CDNUnited States
AS15169Google LLC
4171.33.132.16Noordwijkerhout, South Holland, Netherlands
AS28878Signet B.V.
4172.217.115.4Google · CDNUnited States
AS15169Google LLC
4142.251.157.4Google · CDNUnited States
AS15169Google LLC
4142.251.110.136Google · CDNUnited States
AS15169Google LLC
4172.217.114.4Google · CDNUnited States
AS15169Google LLC
4142.251.110.138Google · CDNUnited States
AS15169Google LLC
4141.138.169.238Netherlands
AS20847Previder B.V.
4142.251.14.94Google · CDNUnited States
AS15169Google LLC
17235--

Detected Technologies12

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T198F2E835E13A846D2B47DB6DA152B31EE045F151C72267E9B0BC113C1EEFAFB01E261A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:9iwY7g5IqEIL8au5eS2htIqEIL8au5eS2hq8jJS0L76O5plhpILBHu5T/2hjZdy8:ZY7g5IqEIL8au5eS2htIqEIL8au5eS2O

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:34629:HAIBKiArACgYLiRAJEwAFlCMMGEAsRosTCQAEmyokIBYhGE+6p1SwDxsimEppCCACqTDF0gumDqUhURCHoFAAlhIgGyQAAzg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00feffffffffffff
Perceptual Hash:d25656522a2b2f2f
Difference Hash:d4d4030000000000
Wavelet Hash:0060f1f101010303
Color Hash:#5a3a78

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data