Security Scan Report: hb2grktsae.localto.net

Site favicon
Submitted: Sep 19, 2026, 1:47:31 AMCompleted: Sep 19, 2026, 1:47:56 AMpubliccompleted

This website contacted 2 IPs in 2 countries across 2 domains to perform 3 HTTP transactions. The main domain is hb2grktsae.localto.net and was registered 4 years 11 months ago.

Submitted URL: https://hb2grktsae.localto.net

The Cisco Umbrella rank of the primary domain is #925,694 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

Inert Localtonet tunnel placeholder page showing a 'tunnel stopped' notice. No forms, no brand impersonation, established domain, no malware or phishing content — no meaningful risk to users.

Safety Factors
No credential, login, or payment form present
No brand impersonation — page displays only its own service brand (Localtonet)
Domain active for over 3 years
No JavaScript behavioral anomalies or credential exfiltration
Suricata alerts are informational tunneling-service recognition (ET INFO), not malware/phishing alerts
Domain age information unavailable

Details

Page Title

Localtonet � Tunnel Stopped

Scan Type

public

Domain Name Analysis

The domain 'hb2grktsae.localto.net' uses the network infrastructure generic top-level domain (.net), featuring subdomain 'hb2grktsae'. Count 7 characters in 'localto' containing three vowels alongside four consonants. Tokenizing the label suggests two words: local, to. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://hb2grktsae.localto.net

Page Load Overview

4.29s
Total Load Time
18 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:211 chars
Detector Agreement:50%

Website Classification

Primary Category

real estate property48% confidence
Type: static
Method: ml+structural

All Detected Categories

real estate property
48%
news media journalism
47%
government public service
47%
healthcare medical
35%
documentation technical
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
294.156.250.190City of London, England, United Kingdom
AS136258BrainStorm Network, Inc
1130.61.227.173Oracle · CLOUDFrankfurt am Main, Hesse, Germany
AS31898Oracle Corporation
32--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1035185B2B00E103DB223C4D1F562379D7086C05ADA9F4B79F8B53265CAC519F957224C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TmpqJk36GKZVr++mFfDeuFfjm4mVoUZ4dYGw1hYWGGAT:TmNx6mwurUZR3Le

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2528:AggIAwEACAAAAgAAAAowECACAFAIQKAAFggCAQABAggBAAZgBAAEhABgEmAAAQAIAwAACAQKAAQQEAYAABAAAAQAAQAUYSBA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7c3c3e7e7ffff
Perceptual Hash:e633cccc31666699
Difference Hash:000c4d4d4d4d0408
Wavelet Hash:3f0303030303033f
Color Hash:#ac535f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data