Security Scan Report: secure-site-editor--ceo303.replit.app

Submitted: Jul 23, 2026, 8:50:21 AMCompleted: Jul 23, 2026, 8:51:34 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 3 countries across 11 domains to perform 2 HTTP transactions. The main domain is secure-site-editor--ceo303.replit.app and was registered NaN years ago.

Submitted URL: https://secure-site-editor--ceo303.replit.app/

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

The site presents a credential‑stealing login page flagged by Safe Browsing and associated with a malicious IP, warranting high‑risk classification.

Risk Factors
Credential collection form on unranked domain
Safe Browsing social engineering flag
IP reputation match to known attacker
Lack of brand ownership (generic portal) suggests impersonation
Domain age information unavailable

Details

Page Title

PORTAL - Mail Authentication

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(69%)

Domain Information

The domain 'secure-site-editor--ceo303.replit.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'secure-site-editor--ceo303'. Its registrable label 'replit' stretches across 6 characters holding two vowels versus four consonants. Segmentation suggests two words: rep, lit. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://secure-site-editor--ceo303.replit.app/

Page Load Overview

5.79s
Total Load Time
19
HTTP Requests
13
Domains
242 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:319 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software69% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
69%
documentation technical
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10178.237.33.50Utrecht, Utrecht, Netherlands
AS8455atom86 BV
135.190.3.23Google · CDNKansas City, Missouri, United States
AS396982Google LLC
1104.18.0.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.14.95Google · CDNUnited States
AS15169Google LLC
1104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
113.107.246.44Azure · CLOUDUnited States
AS8075Microsoft Corporation
1104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
134.117.33.233Google · CDNKansas City, Missouri, United States
AS396982Google LLC
195.101.27.170Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1910--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10804B9ADD0AA00D123B1C012AB5A736860B1F77BCC556C2DF51E404C5FCAA5B36F9B7A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:E3AceBsvlFr8HFgT5Dk9IESzfUiwoPJNOIpwNMOC35Jccnlhxxv:rsXraF8kYPKIpw43D1

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:182783:KpYmK/gDIoRhABIAgIwCAFUdLEwI4UkKBF4B4EBJLHHiyCB0QLAwkYYQ4i2QMDBkYGAGhhiSBFYsTUDwB0UKwow0AAARBUA6

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7efe7e7e7fffe
Perceptual Hash:f7aadc227688dc22
Difference Hash:000c0c4c4d0c0800
Wavelet Hash:2727272727270f0e
Color Hash:#39862d

Other Hashes

Crop Resistant:000c0c4c4d0c0800

Scan History

Scan history not available

Unable to load historical scan data