Security Scan Report: www.petaloso.shop

Submitted: Oct 29, 2025, 11:01:35 AMCompleted: Oct 29, 2025, 11:03:05 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 25 HTTP transactions. The main domain is petaloso.shop.

Submitted URL: https://www.petaloso.shop/update.plala.or.jp/sso.login/login2.php

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Site is a high‑confidence phishing scam; do not enter credentials and report it.

Risk Factors
Credential harvesting form on a brand‑less, newly registered domain
Google Safe Browsing social engineering detection
Domain is UNRANKED and not listed in Cisco Umbrella top 1M
Domain appears to be less than 7 days old, triggering CONFIRMED_SCAM criteria
Domain age information unavailable

Details

Page Title

ログイン

Scan Type

public

Language

🇯🇵

Japanese

(80% confidence)

Category

other

(42%)

Domain Information

You're looking at domain 'www.petaloso.shop' on the commerce-oriented generic top-level domain (.shop), featuring subdomain 'www'. Its registrable label 'petaloso' stretches across 8 characters holding four vowels versus four consonants. Breaking it apart gives two words: petal, oso. Median word length is 4 characters. The linguistic tilt is Basque for 'petalo'. You will also see it in English and Norwegian contexts.

Screenshot

Security scan screenshot of https://www.petaloso.shop/update.plala.or.jp/sso.login/login2.php

Page Load Overview

46.82s
Total Load Time
25
HTTP Requests
2
Domains
209 KB
Total Size

Language Analysis

Primary Language

🇯🇵Japanese
Code: ja
Confidence:80%
Script:Mixed
Direction:ltr

Detection Details

Language Code:ja
Detection Confidence:80%
Script Type:Mixed
HTML Lang Attribute:ja
Text Length:294 chars
Detector Agreement:100%

Website Classification

Primary Category

other42% confidence
Type: webapp
Method: ml+structural

All Detected Categories

other
42%
suspicious phishing
42%
malicious
37%
legitimate website
34%
e-commerce
27%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1362.182.83.178Kyiv, Kyiv City, Ukraine
AS30860Virtual Systems LLC
1291.235.133.182United States
252--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T110023504B7E42B09642154F0D2607EAA4FD5CC3FD7220D54745EA17E1F89B4A8D6BABC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:GRO7NCCJftQfy4FsbDGOC3vkGVj+frWRDXvxhC5O3if7IPQrpS4qFAwgw3po9fZ5:GRMYMWQXGL4ADXuQKNS4qivgpoX5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8905:wI5CNoDCAChQ5UNVQIQGEAxFHDukmAREwyBiCKoBwRgCYQgZxVKuMB8l4KPBQN8Bw0GIAMgCiAANhWwkhQCwqJqHroABCKAQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1c043c3c3c000000
Perceptual Hash:9e933138dc989cdc
Difference Hash:314d706860140400
Wavelet Hash:1c243c3cfcd0c0c0
Color Hash:#c5af87

Other Hashes

Crop Resistant:314d706860140400

Scan History

Scan history not available

Unable to load historical scan data