Security Scan Report: merodeadordemordor.com

Submitted: Mar 31, 2026, 2:05:07 PMCompleted: Mar 31, 2026, 2:06:22 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is merodeadordemordor.com and was registered NaN years ago.

Submitted URL: https://merodeadordemordor.com/pagusuario.php

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

New site with only a password field, likely a phishing login page; classify as confirmed scam.

Risk Factors
Brand‑new domain (<7 days) hosting a password‑only form
Credential‑harvesting form without accompanying username field
Lack of any legitimate site content or additional forms
Domain age information unavailable

Details

Page Title

merodeadordemordor.com

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(26%)

Domain Information

Domain 'merodeadordemordor.com' uses the commercial generic top-level domain (.com) without a subdomain. The second-level label 'merodeadordemordor' is 18 characters long containing eight vowels alongside 10 consonants. It segments into 5 words: mero, dead, or, de, mordor. Median word length is 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://merodeadordemordor.com/pagusuario.php

Page Load Overview

4.75s
Total Load Time
18
HTTP Requests
5
Domains
219 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:78 chars
Detector Agreement:50%

Website Classification

Primary Category

finance banking26% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
26%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
18195.35.10.80Phoenix, Arizona, United States
AS47583Hostinger International Limited
181--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T147048F77329A063986558498E05B830D9F21B143F506C9BC79BCBAD8BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:afQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIsz/2bMy8Oldq:hhoC9JSqzzbs6o3Sj3gcrsb2eAw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:187220:/g5TBg44KMAITCBADBWARSSQAAHEGAAJD0m1DfJCYQCBoAQkYAiAAoOLDggFoLwDIg0TgA0o2f0dBgwUUNuAgJpAggAuQJcJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc7c7c3d3ffffff
Perceptual Hash:b1339acccc93b364
Difference Hash:0018181616000000
Wavelet Hash:fcdcc4c4003c3c3c
Color Hash:#482dd2

Other Hashes

Crop Resistant:0018181616000000

Scan History

Scan history not available

Unable to load historical scan data