Security Scan Report: guniforez.z9.web.core.windows.net

Redirected to:
https://guniforez.z9.web.core.windows.net/nxkgcb4j/archiloquy/hypsomet...
Site favicon
Submitted: Sep 11, 2026, 6:44:18 PMCompleted: Sep 11, 2026, 6:45:31 PMpubliccompleted

This website contacted 5 IPs in 2 countries across 4 domains to perform 27 HTTP transactions. The main domain is guniforez.z9.web.core.windows.net and was registered 2 weeks ago.

Submitted URL: https://guniforez.z9.web.core.windows.net/nxkgcb4j/

Effective URL:

https://guniforez.z9.web.core.windows.net/nxkgcb4j/archiloquy/hypsomet...
Redirected

AI Security Verdict

Low Risk

Confidence: 78%

2
Risk Score

The page shows no credential collection or brand impersonation; only a weak, unverified phishing IoC on a third‑party domain, resulting in a low risk assessment.

Risk Factors (1)
Unverified single‑source phishing IoC on external resource
Safety Factors (3)
No forms collecting credentials or payment data
Content appears to be a public digital library with no malicious scripts
No brand impersonation or credential exfiltration
Domain age information unavailable

Details

Page Title

​   ‍ 0x80313D ​   ‍ 0xA001FE‌ ‌  ‌‌ ‌

Scan Type

public

Domain Name Analysis

The domain name 'guniforez.z9.web.core.windows.net' uses the network infrastructure generic top-level domain (.net), featuring subdomain 'guniforez.z9.web.core'. The core label 'windows' covers 7 characters containing 2 vowels alongside 5 consonants. Tokenizing the label suggests one word: windows. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://guniforez.z9.web.core.windows.net/nxkgcb4j/

Page Load Overview

4.79s
Total Load Time
1.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:84,540 chars
Detector Agreement:75%

Website Classification

Primary Category

healthcare medical88% confidence
Type: spa
Method: ml+structural

All Detected Categories

healthcare medical
88%
news media journalism
81%
education learning
72%
cryptocurrency blockchain
70%
finance banking
69%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
557.150.54.171Azure · CLOUDToronto, Ontario, Canada
AS8075Microsoft Corporation
5104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5172.67.180.103Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
275--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18F345B13E718337617A3007676995B57A97FC12A321A0D8470EC817C779E8EC937B3AA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:hptQV6sUZxBM8LRbIaXoHJ9TtXTrl+h5ug/7Mh:7tBsUZ/M+rov9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:243747:QnAJoykargCAYOCJAQsbDALAldsDEihQDSjGAggaURQgRfAUEchIIECEgwQvKSIFmloTQA2RgADgAUUBLHURBsHAEkEGNFgE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff20383838e7ffff
Perceptual Hash:c34bb4b4ccb4b4c9
Difference Hash:61c9e0e0e10e0f61
Wavelet Hash:fc0038383883e7ff
Color Hash:#e06c7b

Scan History

Scan history not available

Unable to load historical scan data