Security Scan Report: eczakozmetik.net

Redirected to:
https://www.noticeofpleadings.net/lumma/domainseizurenotice.htm
Submitted: Sep 14, 2026, 10:47:45 AMCompleted: Sep 14, 2026, 10:48:20 AMpubliccompleted

This website contacted 3 IPs in 1 country across 2 domains to perform 12 HTTP transactions. The main domain is noticeofpleadings.net and was registered 2 years 4 months ago.

Submitted URL: https://eczakozmetik.net

Effective URL:

https://www.noticeofpleadings.net/lumma/domainseizurenotice.htm
Redirected

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Entry domain eczakozmetik.net is a multi-source confirmed Lumma Stealer C2 (2 CRITICAL IDS alerts); page redirects to a Microsoft-branded seizure notice. Malicious infrastructure — avoid.

Risk Factors (3)
Primary domain flagged as Lumma Stealer command-and-control by multiple feeds and CRITICAL IDS signatures
Cross-domain redirect from a known malware C2 host to an unrelated notice domain
Page displays Microsoft seizure framing on a non-Microsoft domain
Domain age information unavailable

Details

Page Title

This website domain has been seized by Microsoft

Scan Type

public

Domain Name Analysis

Within the network infrastructure generic top-level domain (.net), 'eczakozmetik.net' is registered without a subdomain. Its registrable label 'eczakozmetik' stretches across 12 characters holding 5 vowels versus 7 consonants. Splitting it apart reveals 5 words: ec, zak, oz, met, ik. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://eczakozmetik.net

Page Load Overview

6.31s
Total Load Time
2.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:56%
Script:Latin
Direction:ltr

Detection Details

Text Length:1,000 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software71% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
71%
corporate business
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
440.91.108.115Azure · CLOUDUnited States
AS8075Microsoft Corporation
4150.171.109.104Azure · CLOUDUnited States
AS8075Microsoft Corporation
4150.171.109.105Azure · CLOUDUnited States
AS8075Microsoft Corporation
123--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CFA17601E5D5762BB04284C056273FA53BC84107C36E89A4B5E563AD1FC7CD6C6B3798

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:qewe5LfAnARZab+1wJDkev3oa5Zwj3yAWuo6OXpryDv8UV3m:qeBtfPRd6wa5XI8UV2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4766:AMAABIFgBiABCeAICjAgEIAWAlIIQBAgAAAAACAKIYIgAEEgggwgQDBAgAJcIKJBAmBAAEIQgACAAQwCwQRAYgLIgRBgQAPg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e700ff0fffffffff
Perceptual Hash:b33266e6b2b3a2c4
Difference Hash:0c22313900080008
Wavelet Hash:e7000000ffffff81
Color Hash:#e0a66c

Scan History

Scan history not available

Unable to load historical scan data