Security Scan Report: www.incofar.it

Site favicon
Submitted: Sep 16, 2026, 3:47:46 AMCompleted: Sep 16, 2026, 3:48:24 AMpubliccompleted

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is incofar.it and was registered 28 years ago.

Submitted URL: https://www.incofar.it/js/jquery/plugins/ajaxfileupload/mag.txt

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Long-established incofar.it is serving a malicious PHP recon/webshell script at an ajaxfileupload plugin path, flagged as stylesmuggler malware — the site appears compromised. Avoid.

Risk Factors
Malicious PHP webshell/recon script hosted at the scanned URL
Known malware family (stylesmuggler) threat-intel match on the primary domain URL
Evidence the long-established site has likely been compromised (uploader plugin abused to drop a shell)
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(48% confidence)

Category

documentation technical

(40%)

Domain Information

Within the Italian country-code top-level domain (.it), 'www.incofar.it' is registered and includes subdomain 'www'. Count 7 characters in 'incofar' split between 3 vowels and 4 consonants. Splitting it apart reveals 3 words: in, co, far. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.incofar.it/js/jquery/plugins/ajaxfileupload/mag.txt

Page Load Overview

0.53s
Total Load Time
2
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:48%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:48%
Script Type:Latin
Text Length:1,742 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical40% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
40%
technology software
32%
corporate business
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
294.237.87.223Frankfurt am Main, Hesse, Germany
AS202053UpCloud Ltd
21--

Page Statistics

2
Requests
1
Unique Domains
4.6 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F5416222F04FEC9B6357A5F58B91384C486B5108BD011C107EAD58DCB7B827D8CEE565

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:/232KGjGyGOUYybKnXwxeS4F6RYZ8Iu3B57jP3CdL3:u32KGjGyGOUYQKueGRf3B57z3E

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1913:ICAABAAAAJAACkABAAAIAgBBAEACAgAACRIAQCBAQiAAAAQAAQwAFEAADAAAIAAAgAECAAEgAEBIIAAAAAAAARSAAgCAEAQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3f3f7f3f3f1f007f
Perceptual Hash:8787f01cfe30f0f0
Difference Hash:c060c06060f0f0d0
Wavelet Hash:303030101c0c000f
Color Hash:#40bfb0

Other Hashes

Crop Resistant:c060c06060f0f0d0

Scan History

Scan history not available

Unable to load historical scan data