Security Scan Report: prickly-ear.surge.sh

Submitted: Nov 21, 2025, 4:44:55 AMCompleted: Nov 21, 2025, 4:47:07 AMpubliccompleted
Loading additional data...

Summary

This website contacted 14 IPs in 2 countries across 5 domains to perform 8 HTTP transactions. The main domain is prickly-ear.surge.sh and was registered NaN years ago.

Submitted URL: https://prickly-ear.surge.sh/

The Cisco Umbrella rank of the primary domain is #193,323 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

High‑risk phishing site impersonating Rackspace Webmail; do not enter credentials.

Risk Factors
Brand impersonation of Rackspace on an unrelated domain
Credential harvesting form (password field) on a suspicious site
Low Cisco Umbrella ranking for a site claiming a major brand
Domain age information unavailable

Details

Page Title

Rackspace Webmail: Hosted Email for Business

Scan Type

public

Language

🇺🇸

English

(59% confidence)

Category

corporate business

(63%)

Domain Information

You're looking at domain 'prickly-ear.surge.sh' on the .sh country-code top-level domain, featuring subdomain 'prickly-ear'. Its registrable label 'surge' stretches across 5 characters holding two vowels versus three consonants. Segmentation suggests 1 word: surge. Median word length comes out to five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://prickly-ear.surge.sh/

Page Load Overview

0.18s
Total Load Time
8
HTTP Requests
5
Domains
127 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:59%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:59%
Script Type:Latin
Text Length:216 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate business63% confidence
Type: static
Method: ml+structural

All Detected Categories

corporate business
63%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8142.250.186.74United States
AS15169GOOGLE
2138.68.112.220Frankfurt am Main, Hesse, Germany
AS14061DIGITALOCEAN-ASN
2142.250.185.99United States
AS15169GOOGLE
213.107.246.45United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
1142.250.185.202United States
AS15169GOOGLE
169.20.91.24United States
AS27357RACKSPACE
0142.250.186.99United States
AS15169GOOGLE
013.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
02001:4802:7a01:10::4United States
AS27357RACKSPACE
013.107.213.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
814--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D732745655B31511B943E5A8BFEBAB013211C013890ACD6DBEAC978CCFCB9959CA378C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:bjDR/bD7usEImU6B1ELlC5dKwmI/MJtbJ6Nu/Z0J0MCqRlj+f4X0ay:bPFEIpIjMzz/eCqnjdw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11819:QlQdBJpxsGSKQyMKQANxGgwwiKwmMxjAg1pCQhEFfAslLFhQoghpCQAEHHUIwBYApEEYoFAIRYSgOgg24WFLFAYCFoJGwDAI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data