Security Scan Report: oms.innovaonline.sa

Redirected to: https://oms.innovaonline.sa/login

Submitted: Jan 23, 2026, 10:00:27 PMCompleted: Jan 23, 2026, 10:01:36 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 4 domains to perform 18 HTTP transactions. The main domain is oms.innovaonline.sa.

Submitted URL: http://oms.innovaonline.sa/

Effective URL: https://oms.innovaonline.sa/loginRedirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Login page on an unknown, unranked domain; treat as high‑risk phishing.

Risk Factors
Credential harvesting form on a domain with unknown age
Unranked domain (low reputation indicator)
Potentially newly registered domain
Domain age information unavailable

Details

Page Title

OMSKEYDEVS | Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(46%)

Domain Information

Domain 'oms.innovaonline.sa' uses the Saudi country-code top-level domain (.sa) with subdomain 'oms'. The core label 'innovaonline' covers 12 characters split between six vowels and 6 consonants. Word splitting yields 3 words: in, nova, online. Median word length comes out to 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://oms.innovaonline.sa/

Page Load Overview

1.84s
Total Load Time
19
HTTP Requests
4
Domains
30 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:135 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service46% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
46%
technology software
36%
documentation technical
29%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7172.66.40.99United States
AS13335CLOUDFLARENET
4172.67.68.68United States
AS13335CLOUDFLARENET
4104.16.80.73United States
AS13335CLOUDFLARENET
4104.18.40.68United States
AS13335CLOUDFLARENET
194--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11AB2CA74142F650186A79CA330CB3E1678454431A6BA062BFB2C499CCFFB86B9397F59

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:+a+fGlWmElcWvTLo8RTwWaomdL8NfreHjW9BsW+UyUwo7amwBDsNzWw8pi8fQs0l:EQVx/j+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24261:oCCE0jAgkjCQoWgHRMJgAUEooGzABwAZBIkxaMfopJWKmoiDgJGPBGSzpAQgCUCpBIdQlQ+KQQAgCIWJAAQhMECaBonGAALA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3f7f7fffffffffff
Perceptual Hash:800103070f9fff7f
Difference Hash:c080c00000000000
Wavelet Hash:3f004fcf00000000
Color Hash:#8779d2

Other Hashes

Crop Resistant:c080c00000000000

Scan History

Scan history not available

Unable to load historical scan data