Security Scan Report: www.mirrored.to

Site favicon
Submitted: Aug 11, 2026, 9:35:24 PMCompleted: Aug 11, 2026, 9:36:55 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 3 domains to perform 2 HTTP transactions. The main domain is mirrored.to and was registered NaN years ago.

Submitted URL: https://www.mirrored.to

The Cisco Umbrella rank of the primary domain is #653,740 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

The site hosts a credential‑collecting login form with disguised password fields, indicating a high‑risk phishing attempt despite its age and lack of other malicious indicators.

Risk Factors
Credential collection form
Disguised password field
Unicode evasion in form inputs
Safety Factors
Established domain (8+ years)
No malicious JavaScript patterns detected
No network IDS alerts
Established domain (2971 days old) with no strong malicious indicators — risk clamped from 7 to 5
Domain age information unavailable

Details

Page Title

Mirrored.to - Mirrorcreator - Upload files to multiple hosts

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(45%)

Domain Information

The domain name 'www.mirrored.to' uses the .to country-code top-level domain; it also runs on subdomain 'www'. Count 8 characters in 'mirrored' split between three vowels and five consonants. It segments into one word: mirrored. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.mirrored.to

Page Load Overview

1.21s
Total Load Time
21
HTTP Requests
5
Domains
407 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:5,698 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software45% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
45%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7142.251.13.97Google · CDNUnited States
AS15169Google LLC
7142.251.14.95Google · CDNUnited States
AS15169Google LLC
791.195.99.122Bucharest, Bucharest, Romania
AS9009M247 Europe SRL
213--

Page Statistics

21
Requests
5
Unique Domains
419.9 KB
Total Size

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T109431A3388F1B1670233C5E6B7E54B152D624017DE420D45B3EC2BA88FEBE49F867A65

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:PdNUfpHWYfh6GeiqxTAerjFIoLlCx6SVPgSOkM0:IIFIoLFSV80

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:58064:CYCERQZcJIkvZdC/UgAoAqCz4KGkGhyQiAAegKWyMqCJCREEkAAQBAMliIMw0+QUAIBwggER8JEACYuEOEkSfYiC+oUAUiRM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:003cffffffffffe7
Perceptual Hash:d34b63483349717d
Difference Hash:d8cccccccccce84c
Wavelet Hash:00347e3e3c3c3ce7
Color Hash:#401f93

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data