Security Scan Report: lashgoleor.com

Redirected to:
https://lashgoleor.ie/
Site favicon
Submitted: Sep 22, 2026, 5:47:27 AMCompleted: Sep 22, 2026, 5:47:59 AMpubliccompleted

This website contacted 8 IPs in 2 countries across 10 domains to perform 96 HTTP transactions. The main domain is lashgoleor.ie and was registered 9 years ago.

Submitted URL: https://lashgoleor.com

Effective URL:

https://lashgoleor.ie/
Redirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

A legitimate-looking hurley maker's site appears compromised, loading blockchain RPC and flagged malware resources with a critical EtherHiding malware IDS alert. Avoid interaction.

Risk Factors (4)
Critical IDS malware alert indicative of EtherHiding exfiltration
Blockchain RPC endpoint loaded in page (C2/config retrieval vector)
Multi-source malware IoC for loaded third-party domain xaz2.com
Malware loader indicators on both the entry and final domains
Domain age information unavailable

Details

Page Title

Home - L’Ash Go Leor

Scan Type

public

Domain Name Analysis

The domain name 'lashgoleor.com' uses the commercial generic top-level domain (.com) without a subdomain. The second-level label 'lashgoleor' is 10 characters long holding four vowels versus six consonants. Breaking it apart gives four words: lash, go, le, or. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://lashgoleor.com

Page Load Overview

9.81s
Total Load Time
975 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:4,637 chars
Detector Agreement:75%

Website Classification

Primary Category

entertainment media39% confidence
Type: spa
Method: ml+structural

All Detected Categories

entertainment media
39%
corporate
35%
documentation technical
35%
adult content
31%
real estate property
26%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12162.144.12.244Phoenix, Arizona, United States
AS31898Oracle Corporation
1218.185.191.84Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
12172.67.70.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
12188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
123.163.248.4Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
12172.67.72.108Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
123.120.13.126Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1235.190.43.134Google · CDNKansas City, Missouri, United States
AS396982Google LLC
968--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B6E20972819526953F1EA79CB2EF733C82C8D506C9216777B1BC287C05A85F70167A2F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Y9i5Q62I/xE6x4g5bn/boSjIqasZdypa92Wk/Y:+iC2IqacyptWk/Y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:32481:GCBExJCiwcTIAwAKCc20IgKcXTHHJRxYAKrQFULiINGrQEDiBBRLqVQsQkAFBApBxweGIKthgzJChIhpZIOJkQdAFBICaUQG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffff0000ff
Perceptual Hash:d7f50a03f40bf40b
Difference Hash:0000004002496936
Wavelet Hash:fffffffe00000001
Color Hash:#78563a

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data