Security Scan Report: s2.qjbliz7.sa.com

Submitted: Nov 17, 2025, 2:53:46 PMCompleted: Nov 17, 2025, 2:54:49 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 3 HTTP transactions. The main domain is s2.qjbliz7.sa.com and was registered NaN years ago.

Submitted URL: https://s2.qjbliz7.sa.com/3ID_IT8B38D104BCE78B91B0F3121C13B8FCB0/F31213B8FCB0BCE78B91B003I4BCE78B003I4BCE78B91B091B65/index.htm

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page impersonating Aruba Webmail; avoid and report.

Risk Factors
Credential harvesting form (password-only)
Brand impersonation of Aruba Webmail
Unranked domain hosting a fake login page
Domain age information unavailable

Details

Page Title

Webmail Aruba

Scan Type

public

Language

🏳️

UNKNOWN

(0% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 's2.qjbliz7.sa.com' on the commercial generic top-level domain (.com); it also runs on subdomain 's2.qjbliz7'. The registrable portion 'sa' spans 2 characters holding one vowel versus one consonant. Tokenizing the label suggests two words: s, a. Median word length is one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://s2.qjbliz7.sa.com/3ID_IT8B38D104BCE78B91B0F3121C13B8FCB0/F31213B8FCB0BCE78B91B003I4BCE78B003I4BCE78B91B091B65/index.htm

Page Load Overview

22.60s
Total Load Time
3
HTTP Requests
2
Domains
566 KB
Total Size

Language Analysis

Primary Language

🏳️UNKNOWN
Code: unknown
Confidence:0%

Detection Details

Language Code:unknown
Detection Confidence:0%
Text Length:13 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2146.75.120.193Frankfurt am Main, Hesse, Germany
AS54113FASTLY
1172.93.121.5Los Angeles, California, United States
AS393960HOST4GEEKS-LLC
32--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1AB2512228AD9BFBDDB68651D90BE2B1E53F14B5E4129A089D763FC87AFE7500010F0D9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24576:ovH9EL6WcqcnllDTbZBGsKyprI5yj5hQUhz3L2XJD:WWcvdfzpWPX

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1013607:8CQEBZIwCILKRsAcBkcAoJ4qRIYgGFEsBrgNUJEAUFMAEG8nSEGhEAAtAEKKZRawsJRDAAQaGuDJDFolIRoElYHgMgRuAEE8

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff870f0f87ffffff
Perceptual Hash:bc3fc3e23898c166
Difference Hash:086c34343d922000
Wavelet Hash:e30703030303ffff
Color Hash:#9e87c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data