Security Scan Report: allaflygbiljetter.se

Site favicon
Submitted: Sep 27, 2026, 6:00:29 AMCompleted: Sep 27, 2026, 6:01:26 AMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 72%

2
Risk Score

Established 15-year-old Swedish flight comparison site with self-branding, no Indicators of Compromise, malware, or impersonation. Only minor signals are tracking redirects and eval() in ad scripts.

Risk Factors (3)
Excessive redirects (12 cross-domain) — minor signal, common with ad and analytics networks
4 eval() calls detected — dynamic code execution, weak signal typical of ad/tracking scripts
3 password fields present on the page (own-domain login / forgotten-password), no impersonation or exfiltration
Safety Factors (5)
Well-established domain age (over 15 years)
Self-branding matches domain — no brand impersonation
No Indicators of Compromise, YARA, IDS, or Safe Browsing hits
No cross-origin credential forms or credential exfiltration
No payment fields; forms are standard flight-search/booking and contact forms
Domain age information unavailable

Details

Page Title

Billiga flygbiljetter - Jämför Alla Flygbiljetter

Scan Type

public

Domain Name Analysis

You're looking at domain 'allaflygbiljetter.se' on the Swedish country-code top-level domain (.se) while skipping any subdomain. The core label 'allaflygbiljetter' covers 17 characters holding 5 vowels versus twelve consonants. Splitting it apart reveals 6 words: all, a, fly, gb, ilje, tter. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://allaflygbiljetter.se

Page Load Overview

2.95s
Total Load Time
1.6 MB
Total Size

Language Analysis

Primary Language

🇸🇪Swedish
Code: sv
Confidence:62%
Script:Latin
Direction:ltr

Detection Details

Text Length:6,912 chars
Detector Agreement:100%

Website Classification

Primary Category

e-commerce50% confidence
Type: spa
Method: structural

All Detected Categories

e-commerce
50%

Detected Features

Login Form
Search
Payment

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1354.246.216.164Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
699.84.149.23Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
6142.250.154.97Google · CDNUnited States
AS15169Google LLC
635.190.88.7Google · CDNKansas City, Missouri, United States
AS396982Google LLC
6157.240.0.35Facebook · CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
6216.239.34.36Google · CDNUnited States
AS15169Google LLC
6142.251.127.154Google · CDNUnited States
AS15169Google LLC
6142.250.154.94Google · CDNUnited States
AS15169Google LLC
6142.251.150.119Google · CDNUnited States
AS15169Google LLC
6142.250.154.148Google · CDNUnited States
AS15169Google LLC
9715--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FFD3B82060D2643F367741EAA9656F2772D2930FC702494CB9AC1BBB1FDAC706A5F21D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:BxnXttl9ttattMttL4tt4wttfttxttPttB:B1ttl9ttattMttL4tt4wttfttxttPttB

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:141596:eJAFGxAEBoOgD2O1UNBgFKKjRBAPvBAUwoNDIIRNjUtzhgALQKsuuUICQWAXgBySCAAEIMxQA3AACJYiEAwOQRMCfKGQwSgE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff7f3f39c3c7c7c7
Perceptual Hash:b689f2704ecf30f0
Difference Hash:a6e2f2630f8e0d0d
Wavelet Hash:7f3b3b300083c7c7
Color Hash:#bfd279

Scan History

Scan history not available

Unable to load historical scan data