Security Scan Report: ww16.gvg-koeln.de

Redirected to: https://resultearchnow.com/?dn=gvg-koeln.de&sksubid=180662&_slsen=1

Site favicon
Submitted: Feb 3, 2026, 6:02:36 AMCompleted: Feb 3, 2026, 6:04:43 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 5 domains to perform 12 HTTP transactions. The main domain is resultearchnow.com and was registered NaN years ago.

Submitted URL: http://ww16.gvg-koeln.de/?sub1=20260203-1702-3518-a96a-acd78f7f056a

Effective URL: https://resultearchnow.com/?dn=gvg-koeln.de&sksubid=180662&_slsen=1Redirected

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

Suspicious new domain with multiple redirects; treat as high risk.

Risk Factors
New domain (<90 days old)
Excessive redirects (5)
Unranked domain in Cisco Umbrella
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🏳️

UNKNOWN

(0% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'ww16.gvg-koeln.de' on the German country-code top-level domain (.de), featuring subdomain 'ww16'. Its registrable label 'gvg-koeln' stretches across 9 characters split between 2 vowels and 6 consonants, notching 1 hyphen. Word splitting yields 5 words: g, vg, ko, el, n. Median word length is 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://ww16.gvg-koeln.de/?sub1=20260203-1702-3518-a96a-acd78f7f056a

Page Load Overview

40.34s
Total Load Time
12
HTTP Requests
5
Domains
15 KB
Total Size

Language Analysis

Primary Language

🏳️UNKNOWN
Code: unknown
Confidence:0%

Detection Details

Language Code:unknown
Detection Confidence:0%
0
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4199.191.50.11British Virgin Islands
AS40034Confluence Networks Inc
2104.21.59.205United States
AS13335Cloudflare, Inc.
264.190.63.136Germany
AS47846SEDO GmbH
2188.114.96.3United States
AS13335Cloudflare, Inc.
2205.234.175.175United States
AS30081CacheFly
125--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FC52F98117B40C0025DD4997ED7CDED6EA461C37BDA82D2CBACEAB84E39D21F2D144B5

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:KhjNyaTM9p645sE/i2FGcmHohS3645lV+QrgdFT7Pkf2DLGAvghS3645lV+Qrgdz:KbgEHohSqewkeDyAvghSqewkenUBa

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13604:IpAfY0AoAomBQEROiBJASARGFQMIABISQ7wCgogAhEgwAIAiAigEgamwitFEvAoBAGLUjCQFUEQkH46AUAQSBIOInCwkgZhB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00e7f7f752101000
Perceptual Hash:e4b11b4a1b4ebaa9
Difference Hash:71969696b6b2b296
Wavelet Hash:18e7fff7db181000
Color Hash:#784d3a

Other Hashes

Crop Resistant:71969696b6b2b296

Scan History

Scan history not available

Unable to load historical scan data