Security Scan Report: protectionpage2025.cfd

Submitted: Oct 19, 2025, 1:07:41 AMCompleted: Oct 19, 2025, 1:08:49 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 6 HTTP transactions. The main domain is protectionpage2025.cfd and was registered NaN years ago.

Submitted URL: http://protectionpage2025.cfd/

AI Security Verdict

Confirmed Scam

Confidence: 85%

10
Risk Score

Highly suspicious site with circular redirect and brand‑new unranked domain; treat as confirmed scam.

Risk Factors
Circular redirect
Brand‑new domain (<7 days)
Unranked/low‑reputation domain
Multiple redirects without legitimate purpose
Domain age information unavailable

Details

Page Title

Business Help Center

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

phishing/scam

(40%)

Domain Information

Domain 'protectionpage2025.cfd' uses the .cfd top-level domain and has no subdomain. Count 18 characters in 'protectionpage2025' containing six vowels alongside 8 consonants; it also includes four digits. Segmentation suggests three words: protection, page, 2025. Median word length is 4 characters. The linguistic tilt is French for 'protection'. Usage also turns up in Chinese (Pinyin) and English contexts.

Screenshot

Security scan screenshot of http://protectionpage2025.cfd/

Page Load Overview

17.72s
Total Load Time
6
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:25 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing/scam40% confidence
Type: static
Method: structural

All Detected Categories

phishing/scam
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3104.21.67.18United States
AS13335CLOUDFLARENET
1172.67.167.159United States
AS13335CLOUDFLARENET
12606:4700:3032::6815:4312United States
AS13335CLOUDFLARENET
12606:4700:3037::ac43:a79fUnited States
AS13335CLOUDFLARENET
64--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12063480E001377A5FBE7ABDC3DA8BE5A5B599FDB6970EA1CB608A2F24F55FB05440010

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:S8iRUchkyLjVgzatJTsLjVuLjVB79cSrLjVGzxLjVIRpHR:S8yx

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:70139:FSAQBo5bkBCFRgNzJTACxEQCyIkMNGZXm2EkoBChEkA8K0AFgFFwAClaQctTBMSkEdQkiAACwCrKIEwcVSAlAgWm/kpADBiB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data