Security Scan Report: www.engelhardtschmuck.de

Submitted: Oct 23, 2025, 12:46:53 PMCompleted: Oct 23, 2025, 12:50:28 PMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 3 countries across 5 domains to perform 466 HTTP transactions. The main domain is engelhardtschmuck.de and was registered NaN years ago.

Submitted URL: https://www.engelhardtschmuck.de/hgbutdj/bla1wet/dguyksx/log-in/index.php

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Site impersonates DKB banking and harvests credentials; treat as phishing.

Risk Factors
Credential harvesting form on a suspicious domain
Brand impersonation of DKB on an unrelated domain
Domain not in Cisco Umbrella top 1M (unranked) while claiming a major bank
No legitimate affiliation with DKB evident
Domain age information unavailable

Details

Page Title

DKB Banking

Scan Type

public

Language

🇩🇪

German

(50% confidence)

Category

finance banking

(62%)

Domain Information

The domain name 'www.engelhardtschmuck.de' uses the German country-code top-level domain (.de) with subdomain 'www'. The registrable portion 'engelhardtschmuck' spans 17 characters holding 4 vowels versus 13 consonants. Segmentation suggests 2 words: engelhardt, schmuck. Median word length is 8.5 characters. The linguistic tilt is German for 'schmuck'. Usage also turns up in English and Malay contexts. Net impression: German phrase.

Screenshot

Security scan screenshot of https://www.engelhardtschmuck.de/hgbutdj/bla1wet/dguyksx/log-in/index.php

Page Load Overview

0.37s
Total Load Time
466
HTTP Requests
5
Domains
255 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:50%
Script Type:Latin
Text Length:308 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking62% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
62%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
45692.205.51.165Strasbourg, Grand Est, France
AS21499Host Europe GmbH
31142.250.185.163United States
AS15169GOOGLE
29104.16.175.226United States
AS13335CLOUDFLARENET
29104.18.10.207United States
AS13335CLOUDFLARENET
29142.250.184.202United States
AS15169GOOGLE
292606:4700::6810:aee2United States
AS13335CLOUDFLARENET
292a00:1169:103:1af0::Strasbourg, Grand Est, France
AS21499Host Europe GmbH
292606:4700::6812:bcfUnited States
AS13335CLOUDFLARENET
292606:4700::6810:afe2United States
AS13335CLOUDFLARENET
292a00:1450:4001:80f::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
46616--

Detected Technologies2

JQueryv3.5.1
100%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A1F1A6536AB1422B359B48984F369529BCABA44BE31D235030BD8B354FC3EC2DE1791C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:v8k0L0GpE6IxyWUBGzRBYLg6Hw74FWClR2SxNZWZ0/wrxS1HiKvP7AUNt+:v8kw0AEb3mwUFRRp9CgE4VvTAgt+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8066:KQCZCxAgkRgaRqBFARI4yPiIVFFGqyiA6BAhBVDIBCChrIkADPTsARAQSEVWgLAIPuKCHB6AQWOAspNAAAI4FJRBCwAgdhCh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7ffffff00
Perceptual Hash:e3b6489c63b6499c
Difference Hash:800c084d4d000cd0
Wavelet Hash:78c10000003c3f00
Color Hash:#1f5993

Scan History

Scan history not available

Unable to load historical scan data