Security Scan Report: 0s8k-x5e9-qtge.aflores-rorealty-com-s-account.workers.dev

Site favicon
Submitted: Sep 5, 2026, 12:45:19 AMCompleted: Sep 5, 2026, 12:47:48 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Page impersonates DocuSign, shows phishing IDS alerts and anti‑analysis tricks; treat as high‑risk phishing site.

Risk Factors (4)
Brand impersonation of a well‑known service
High‑severity phishing IDS alerts
Unranked, unknown‑age subdomain on a shared hosting platform
Anti‑analysis JavaScript (devtools/right‑click blocking)
Domain age information unavailable

Details

Page Title

DocuSign - Review Document

Scan Type

public

Domain Name Analysis

The domain '0s8k-x5e9-qtge.aflores-rorealty-com-s-account.workers.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain '0s8k-x5e9-qtge.aflores-rorealty-com-s-account'. The second-level label 'workers' is 7 characters long containing 2 vowels alongside five consonants. Breaking it apart gives 1 word: workers. Average segment length settles at seven characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://0s8k-x5e9-qtge.aflores-rorealty-com-s-account.workers.dev/598b16e94aacf51d?emai...

Page Load Overview

1.25s
Total Load Time
166 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:460 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software52% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
52%
documentation technical
43%
corporate business
26%
government public service
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4104.21.51.185Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.127.95Google · CDNUnited States
AS15169Google LLC
2172.67.184.33Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
104--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16F62B1F47156373E479245A437BEE9103470F443A0A5E645EE2A28ECF870C4B9F6BDA8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:79mTgX3RNJkg8AIE+naOiVQm2wDncqx+fFMLaDR0gToW2:7oTgXvJ1IExOiVQ+LcY84GdToW2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:15204:ngFRsCTLIXwzACog4BNRAYZA0CtzAJqAloDAgjJQ9CYRHZwjhqEgVEYBIJWDIQAIVJICDBjxiDgCMmBNt0F5ZkAEYMphIgIs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffef1818180000
Perceptual Hash:999cb60c9c19be1e
Difference Hash:20041832a2300008
Wavelet Hash:ffffff5918180000
Color Hash:#86802d

Other Hashes

Crop Resistant:20041832a2300008

Scan History

Scan history not available

Unable to load historical scan data