Security Scan Report: www.google.com

Redirected to:
https://silence.whisperinggalaxy.com/411c1b47-25a6-41d0-9816-1b40ab74d...
Submitted: Sep 27, 2026, 2:37:05 PMCompleted: Sep 27, 2026, 2:38:02 PMpubliccompleted

This website contacted 7 IPs in 1 country across 3 domains to perform 8 HTTP transactions. The main domain is silence.whisperinggalaxy.com and was registered 1 month ago.

Submitted URL: https://www.google.com/url?q=http://malise.malho.de/

Effective URL:

https://silence.whisperinggalaxy.com/411c1b47-25a6-41d0-9816-1b40ab74d...
Redirected

The Cisco Umbrella rank of the primary domain is #1 of the top 1 million websitesTop 100 Site

AI Security Verdict

Low Risk

Confidence: 55%

2
Risk Score

A redirect interstitial reached through a multi-hop chain of unrelated domains, showing only a Swedish 'you are being redirected' notice. No forms, no credential harvesting, no threat-intel or malware hits — odd but not demonstrably malicious.

Risk Factors (3)
Redirect chain traverses several unrelated domains (google.com → malise.malho.de → silence.whisperinggalaxy.com) with opaque tracking parameters
The final landing domain (whisperinggalaxy.com) has no published age or reputation data; the 976-day age and top-100 Umbrella ranking in this report belong to google.com, the entry domain, and say nothing about the final page
The scanner received a 403 block page while a residential client received different content, indicating bot protection or client-conditional serving
Safety Factors (5)
No credential, login, or payment form of any kind is present on the page
No Indicators of Compromise, Google Safe Browsing, YARA, or kit-roster hits
No obfuscated or exfiltrating JavaScript; no cross-origin credential handling
The served content is a plain, textual redirect-warning page with no brand impersonation, no urgency lure, and no data collection
Noindex meta tags absent; no IPFS or cloud-storage hosting
Domain age information unavailable

Details

Page Title

Omdirigeringsmeddelandesecondary capture

Scan Type

public

Domain Name Analysis

The domain name 'www.google.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'www'. Its registrable label 'google' stretches across 6 characters containing 3 vowels alongside three consonants. Splitting it apart reveals 1 word: google. Median word length is six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.google.com/url?q=http://malise.malho.de/

Page Load Overview

4.46s
Total Load Time
3 KB
Total Size

Language Analysis

Primary Language

🇩🇰Danish
Code: da
Confidence:72%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:33 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as da

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2142.251.155.119Google · CDNUnited States
AS15169Google LLC
1192.64.119.227United States
AS22612Namecheap, Inc.
199.83.131.41Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1166.117.110.163Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
13.160.150.10Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
13.160.150.22Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
13.160.150.51Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
87--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C931A8F8758260337607AD2C63BBF74E348795535D568720E863D0E0BF53FC58016945

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:ukstL/JmZ4qmVt8hkVzG/gx6vBOFUxhMP38HyJTrJQ1GRRV4BrJDWssMGRRctYi7:yNrOhcmvFxG38Hg5QsOnDWsGtFfvi

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1634:ACAAADAACACQIAAEAAAABAAgAAJCAgAABAAAAAIIAAAEAAgAKAACAAAAAAAAQAgAAIEABCABAABIAABAABAAIAEACAAAAAgA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1f1fffffffffffff
Perceptual Hash:8f0f0f0707c3e1f1
Difference Hash:e060000000000000
Wavelet Hash:1010f0f0f0f0f0f0
Color Hash:#663a78

Other Hashes

Crop Resistant:e060000000000000

Scan History

Scan history not available

Unable to load historical scan data