Security Scan Report: bhabanagarafoundation.org

Site favicon
Submitted: Sep 25, 2026, 6:50:55 AMCompleted: Sep 25, 2026, 6:52:18 AMpubliccompleted

This website contacted 7 IPs in 3 countries across 6 domains to perform 9 HTTP transactions. The main domain is bhabanagarafoundation.org and was registered 18 years ago.

Submitted URL: https://bhabanagarafoundation.org/johnpardeyarchitects/RequestTender.php

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

High-risk Adobe Acrobat Sign impersonation on unrelated aged domain, with email-harvesting form and unverified phishing/cobalt-strike threat-intel matches.

Risk Factors
Brand impersonation of Adobe Acrobat Sign
Adobe branding on non-Adobe domain
Email harvesting form
Threat-intel phishing match on primary domain
Cobalt strike malware match on site IP:port
Domain age information unavailable

Details

Page Title

Adobe Acrobat Sign - Secure Document Access

Scan Type

public

Domain Name Analysis

The domain name 'bhabanagarafoundation.org' uses the non-profit oriented generic top-level domain (.org) with no subdomain. The second-level label 'bhabanagarafoundation' is 21 characters long split between 10 vowels and eleven consonants. Segmentation suggests 4 words: b, habana, gara, foundation. Average segment length settles at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bhabanagarafoundation.org/johnpardeyarchitects/RequestTender.php

Page Load Overview

2.37s
Total Load Time
442 KB
Total Size

Language Analysis

Primary Language

馃嚭馃嚫English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:531 chars
Detector Agreement:75%

Website Classification

Primary Category

technology software80% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
80%
documentation technical
49%
government public service
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3103.65.139.82Bangladesh
1142.251.20.95Google 路 CDNUnited States
AS15169Google LLC
1104.17.24.14Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
1104.17.25.14Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
1216.195.86.20Cincinnati, Ohio, United States
AS62CyrusOne LLC
1142.251.20.94Google 路 CDNUnited States
AS15169Google LLC
12.16.10.156Akamai 路 CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
97--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T165620F9E56A31082B943F1A86FF6470B3B658043E50ACD283F9D638CCFCA9D5995378C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:eML9phhTkh333iXRJFbnNGU8Aw2ixbVmUpRAyJiuy9BBxlNxh2zDCK:T9/XvFDe2QMBxlNv2zt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:14695:FwZzlNERRGAGSS4ARMoUUEAhEYoEEFCCVDgYUAQBFSAgAVEBEgqKlIEFRJQgKyT2xMETyhJFQyYMRAsDJzBAjJJcAKAECRAh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:300e0e0e0e0e0e00
Perceptual Hash:91ac6e9767929265
Difference Hash:671c181c1c1818c3
Wavelet Hash:ff9f8f8e0e0e0e00
Color Hash:#67931f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data