Security Scan Report: phjoyonline.com

Redirected to: https://78ph.vip/?host=https://2o8ltl.com?ch=52756

Submitted: Jan 12, 2026, 2:48:04 AMCompleted: Jan 12, 2026, 2:50:50 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 1 HTTP transaction. The main domain is 78ph.vip and was registered NaN years ago.

Submitted URL: https://phjoyonline.com/mdk1n

Effective URL: https://78ph.vip/?host=https://2o8ltl.com?ch=52756Redirected

AI Security Verdict

High Risk

Confidence: 88%

10
Risk Score

Site impersonates 22R.cc using a new, unranked domain and redirects, indicating high‑risk phishing.

Risk Factors
Brand impersonation of 22R.cc on unrelated domain
Newly registered domain (<90 days)
Unranked domain (not in Cisco Umbrella top 1M)
Redirect to unrelated domain (78ph.vip) with hidden host parameter
Domain age information unavailable

Details

Page Title

22R.cc - The Philippines' No.1 gaming platform

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

gambling betting

(60%)

Domain Information

Within the commercial generic top-level domain (.com), 'phjoyonline.com' is registered while skipping any subdomain. Its registrable label 'phjoyonline' stretches across 11 characters containing four vowels alongside 7 consonants. Word splitting yields three words: ph, joy, online. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phjoyonline.com/mdk1n

Page Load Overview

90.12s
Total Load Time
26
HTTP Requests
2
Domains
45 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,047 chars
Detector Agreement:100%

Website Classification

Primary Category

gambling betting60% confidence
Type: static
Method: ml+structural

All Detected Categories

gambling betting
60%
social media network
40%
entertainment media
28%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13172.67.178.1United States
AS13335CLOUDFLARENET
13104.21.78.57United States
AS13335CLOUDFLARENET
262--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17D625122E2DE66BB03138290263B7F3DF657446BDE6A4595F0EE05D44FE6DC2C827068

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:nB6sE5QzEhM8bkw8N0qheh3qQ3bM3x4F3Wb3dRuBgChuLmxBQ+ju:gsE5QzEhM8bkw8N096QLMBcGbNRueC4z

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:15943:6EBUQg4QIGEhU5EAoDoNCwSISAbqlOITcwEBMMyHwJBQC1QIg9ziliiAQIfiACABAgBFIEnQGVCBoCAUMEyCQrI6IEhkGhKA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1918191919191919
Perceptual Hash:887166e689b9e666
Difference Hash:31b1333333313131
Wavelet Hash:ff39391919191939
Color Hash:#591f93

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data