Security Scan Report: refi.com

Submitted: Oct 23, 2025, 9:09:00 PMCompleted: Oct 23, 2025, 9:12:15 PMpubliccompleted
Loading additional data...

Summary

This website contacted 28 IPs in 2 countries across 9 domains to perform 44 HTTP transactions. The main domain is refi.com and was registered NaN years ago.

Submitted URL: https://refi.com/learn/mortgage-rates/

AI Security Verdict

AI analysis unavailable for this scan

Details

Page Title

Compare Current Mortgage Rates Today - Refi.com

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(70%)

Domain Information

The domain 'refi.com' uses the commercial generic top-level domain (.com). Its registrable label 'refi' stretches across 4 characters containing two vowels alongside two consonants. Word splitting yields two words: ref, i. Median word length comes out to 2 characters. Most frequently, 'ref' shows up in English. Usage also turns up in Chinese (Pinyin) and Bosnian contexts.

Screenshot

Security scan screenshot of https://refi.com/learn/mortgage-rates/

Page Load Overview

2.11s
Total Load Time
44
HTTP Requests
9
Domains
1.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:8,805 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate70% confidence
Type: spa
Method: structural

All Detected Categories

corporate
70%
news/blog
60%

Detected Features

OG: article
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
23216.168.136.170United States
AS397865MORTGAGE-RESEARCH-CENTER
634.8.38.243Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
3172.66.171.172United States
AS13335CLOUDFLARENET
335.201.112.186Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
2216.239.32.36United States
AS15169GOOGLE
2172.217.18.8United States
AS15169GOOGLE
1104.17.24.14United States
AS13335CLOUDFLARENET
1142.250.186.100United States
AS15169GOOGLE
1104.16.175.226United States
AS13335CLOUDFLARENET
1151.101.129.229San Francisco, California, United States
AS54113FASTLY
4428--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14B231AA31A8C1D37012963C57294B51CA56FD23ADBD889D1FDBF8218E381FB2156728F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:BDnFh8VCmMSHu5PgLpNcwMyiR8AWK841SXGw89+uXAqlC5zL/iByPnX0:BDnECmMSHu54LpNctyidt1Sh8FXAqQHK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:48442:JkYIUMLSJhGCQRIMCwAgQoiMUAJDnAQtAsVDclgcTakOkg2hJZAxkCTIDFQiEgM26UogFiAZAoytEIAsJU0gDgMkEDKAQMYQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff00000000ffc7ff
Perceptual Hash:b046e9bcc3b4c98d
Difference Hash:692dd4ccec1e9fe3
Wavelet Hash:ff00000000ffffff
Color Hash:#1f5993

Scan History

Scan history not available

Unable to load historical scan data