Security Scan Report: lotterycalifornia.com

Redirected to:
https://ww19.lotterycalifornia.com/
Submitted: Sep 20, 2026, 7:23:45 AMCompleted: Sep 20, 2026, 7:24:33 AMpubliccompleted

This website contacted 16 IPs in 5 countries across 10 domains to perform 22 HTTP transactions. The main domain is ww19.lotterycalifornia.com and was registered 29 years ago.

Submitted URL: https://lotterycalifornia.com/

Effective URL:

https://ww19.lotterycalifornia.com/
Redirected

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Aged domain now serving casino/lottery betting content via a mirror subdomain; no forms, malware or Indicators of Compromise found, but gambling content with no licensing info warrants caution.

Risk Factors (2)
Gambling/lottery betting content with no visible licensing or operator information
Aged domain redirected to a numbered mirror subdomain (ww19), a pattern common in gambling affiliates and expired-domain reuse
Safety Factors (6)
No credential, password or payment forms detected (0 forms total)
No Indicators of Compromise or threat-intel matches
No JavaScript malware or YARA matches
No network IDS alerts
No cross-origin credential exfiltration
Domain has a long registration history (26 years)
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Domain 'lotterycalifornia.com' uses the commercial generic top-level domain (.com). Count 17 characters in 'lotterycalifornia' split between 7 vowels and ten consonants. Word splitting yields 2 words: lottery, california. Median word length comes out to 8.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://lotterycalifornia.com/

Page Load Overview

3.05s
Total Load Time
295 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:72%
Script:Latin
Direction:ltr

Detection Details

Text Length:44 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
785.17.5.67British Virgin Islands
AS40034Confluence Networks Inc
1103.224.182.220United States
AS60068Datacamp Limited
1172.98.192.101United States
AS31863Centrilogic, Inc.
1208.91.196.145British Virgin Islands
AS40034Confluence Networks Inc
1188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
194.237.27.56Finland
AS202053UpCloud Ltd
137.19.194.81Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1104.21.26.182Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1212.147.229.201Finland
AS202053UpCloud Ltd
1212.147.230.112Finland
AS202053UpCloud Ltd
2216--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T165E2B4158AF104111A572031DEBF6F8537654A23A58CEC08BD8C5A40EF9E9BB4EB77F4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:+ZBsjBjrAyhtbgt4MiIO/5/9SL87deScFScIQuGG:aMMQdebFbI/

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:33148:oGAUhwAQQAOFWEAhMzoGggGQZGKQkAgYmQlFACDIQCiMTCMAgsBBkGosBQBchhELEZSIlJIhlWDRKgYhMI4CCrGAQiZ0BoQK

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0042c300000000ff
Perceptual Hash:b4649b4e9a4eba26
Difference Hash:319696969692963b
Wavelet Hash:00e7f7e7521800ff
Color Hash:#c58794

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data