Security Scan Report: sara2.ai

Site favicon
Submitted: Oct 8, 2025, 2:03:29 PMCompleted: Oct 8, 2025, 2:04:38 PMpubliccompleted
Loading additional data...

Summary

This website contacted 36 IPs in 2 countries across 13 domains to perform 91 HTTP transactions. The main domain is sara2.ai and was registered NaN years ago.

Submitted URL: https://sara2.ai/

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

High‑risk phishing site impersonating OpenAI Sora 2.

Risk Factors
Brand impersonation of OpenAI Sora 2 on an unusual domain
Critical domain age (2 days) with high risk multiplier
Unranked domain lacking any reputable ranking
Domain age information unavailable

Details

Page Title

Free Sora 2 AI Video Generator Online | Sara2.ai

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

entertainment media

(46%)

Domain Information

Domain 'sara2.ai' uses the Anguillan country-code top-level domain (.ai) without a subdomain. The core label 'sara2' covers 5 characters split between 2 vowels and 2 consonants, notching one digit. Segmentation suggests two words: sara, 2. Expect 2.5 characters per word on average. 'sara' is most common in Italian usage. You will also see it in Afrikaans and Lithuanian contexts.

Screenshot

Security scan screenshot of https://sara2.ai/

Page Load Overview

17.37s
Total Load Time
91
HTTP Requests
13
Domains
60.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:7,993 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media46% confidence
Type: spa
Method: ml+structural

All Detected Categories

entertainment media
46%
technology software
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
21172.67.74.148United States
AS13335CLOUDFLARENET
2188.114.96.3United States
AS13335CLOUDFLARENET
2104.26.14.32United States
AS13335CLOUDFLARENET
220.250.198.32Zurich, Zurich, Switzerland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
2216.58.206.72United States
AS15169GOOGLE
2142.250.186.164United States
AS15169GOOGLE
2104.26.13.204United States
AS13335CLOUDFLARENET
2104.21.70.150United States
AS13335CLOUDFLARENET
240.90.65.96United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
2172.67.136.193United States
AS13335CLOUDFLARENET
9136--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11AD37C3B2209663E560387E1B378B7ACD24BD259DB69C494FDED013873C6EE5D523288

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:hfWGqKh37Gfzf3wkSfzfhfDXfwN+15Hh/SUAskzdN6NQcw/B+ZBT6ZO+7ho+qaWs:HqY375IbNw7kETrST8jcARMt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:130861:M4Y3zgsoEAEoQBCIsEUSSNKDFJQgmp4HjIjIWIgACwpCoFYEBDgCMJiyQQXQN0AUpiAQKlECzCsMb5wQQSBAQMRAMQkCLJCE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00767e2e40001804
Perceptual Hash:969669693996b6c2
Difference Hash:33ccccccd46970cd
Wavelet Hash:027e7e7e66003c7c
Color Hash:#9e6ce0

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data