Scan report · 12 days agoPublic
i.131422.com
202.146.222.253AS152194 · HKSubmittedhttps://i.131422.com
Landed onhttps://i.131422.com/
Verdict
1 of 7 enginesMaliciousAutomated
- Threat Intelligencemalicious
- Browser Analysisclean
- Network & Hostingclean
- Related Infrastructureclean
- Content Inspectionunknown
- TLS Fingerprintunknown
- Domain Intelligenceunknown
Dangerous — confirmed threat
AutomatedIt is listed on external threat-intelligence feeds. We found strong evidence that this site is malicious — for example a phishing page, a scam, or hostile code. Treat anything it asked for (passwords, card details, codes) as exposed.
What to do
Do not enter any information or download anything. If you already did, change those passwords now and contact your bank if payment details were involved. Block or report the link to your team.
This reflects the evidence found at the time of the scan. If you believe it is a mistake, you can escalate it for analyst review.
File
The file was not analysed, so the scan carries no verdict on the file itself.
Infrastructure
- IP
- 202.146.222.253CTGSERVERLIMITED-AS-AP - CTG Server Limited, HK · AS152194HK
- TLS
- CN=YE2, O=Let's Encrypt, C=US · expires Nov 30, 2026
- Redirects
- 0 hops · / → /
WHOIS
- Registrar
- GoDaddy.com, LLC
- Created
- Nov 3, 2013
- Expires
- Nov 3, 2027
- Nameservers
- alaric.ns.cloudflare.comaudrey.ns.cloudflare.com
47 malicious17 suspicious
Hashes & fingerprints
Page Hash880f23d7e32fc4ec3602ec7147b341b917d54fa2e1c2cde0d684ab567e416561Favicon Hash7bf8b412a8249210c9927def562e1875901761c39bdcb43839fb6b4527308a41DOM Hash6be3ae612a04dd74f5eef827b2fcb6f76dff5c02030a3937a3c0ab409c72d01fScreenshot pHash96c1693e967c61c3JARM40d40d40d00040d00042d42d000000831b6af40378e2dd35eeac4e9311926eJA4Xa373a9f83c6b_7022c563de38_2e3757343cb0Cert ThumbprintD72CFB4FA29417038E31EA4AE0A97976AC45BCE3Cert IssuerCN=YE2, O=Let's Encrypt, C=US
Page capture
LiveEngines
7 · time to verdictPage
- HTTP
- 200 · Completed
- Load
- 16.28 s · 10 requests
Stack · 3HTTP/3NginxOpen Graph