Security Scan Report: jamesriver-ins.com

Redirected to:
https://jamesriver-ins.com/lander
Submitted: Sep 17, 2026, 10:47:38 PMCompleted: Sep 17, 2026, 10:48:08 PMpubliccompleted

This website contacted 4 IPs in 3 countries across 4 domains to perform 7 HTTP transactions. The main domain is jamesriver-ins.com and was registered 19 years ago.

Submitted URL: https://jamesriver-ins.com

Effective URL:

https://jamesriver-ins.com/lander
Redirected

AI Security Verdict

High Risk

Confidence: 68%

7
Risk Score

Parked GoDaddy placeholder page, but the primary domain carries a single-source, unverified 'havoc (malware)' Indicator of Compromise. Malware-typed primary-domain hit drives HIGH_RISK; treat the domain as unsafe despite clean page content.

Risk Factors
Single-source, unverified threat-intelligence match naming the primary domain as Havoc malware infrastructure
Domain has no established ranking or legitimacy footprint to counter the malware report
Parked/unused domains are frequently repurposed for malicious hosting
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

You're looking at domain 'jamesriver-ins.com' on the commercial generic top-level domain (.com) without a subdomain. The registrable portion 'jamesriver-ins' spans 14 characters holding 5 vowels versus 8 consonants, notching 1 hyphen. Tokenizing the label suggests 4 words: james, river, in, s. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://jamesriver-ins.com

Page Load Overview

5.94s
Total Load Time
213 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:439 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
476.223.67.189Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
123.207.210.148Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
123.207.210.143Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
115.252.22.250Aws · CLOUDMumbai, Maharashtra, India
AS16509Amazon.com, Inc.
74--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T157B24CFA975410BDE193D3FFA4217A9DB617B069FF83CA84E2985D5062D3C6C98048CA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:FlARZeJ+gPr6ivfNXIT3R+RDM9GpDsZ6NRD+pO6W4NOJ6SpXE:gI/ulZQRSOZmODXE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24396:UPHoUBrEAoS7JIY7CtAxJEgCkROAMggjGIkjqQMYDCgCBYIHshQiCQSQhNdKkp0UCBAIpwjkA4Bio7EkABEAZ9kIc1SgYUCE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffd9e7e7e7e7e7e7
Perceptual Hash:f3c989889696b696
Difference Hash:b2330c0e0c0c0c0c
Wavelet Hash:7e99c3c3c2c2c3c3
Color Hash:#40bfa2

Other Hashes

Crop Resistant:b2330c0e0c0c0c0c

Scan History

Scan history not available

Unable to load historical scan data