Security Scan Report: xinshuru.com

Redirected to: https://xinshuru.com/index.html?p=win

Submitted: Apr 4, 2026, 12:12:51 PMCompleted: Apr 4, 2026, 12:14:27 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 19 domains to perform 1 HTTP transaction. The main domain is xinshuru.com and was registered NaN years ago.

Submitted URL: https://xinshuru.com

Effective URL: https://xinshuru.com/index.html?p=winRedirected

The Cisco Umbrella rank of the primary domain is #299,667 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

High risk due to linking to a known malware domain; avoid visiting or report as malicious.

Risk Factors
External link to malicious domain (dl.360safe.com)
Potential drive‑by download via the linked malware domain
Domain age information unavailable

Details

Page Title

手心输入法

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

technology software

(49%)

Domain Information

The domain 'xinshuru.com' uses the commercial generic top-level domain (.com) and has no subdomain. Its registrable label 'xinshuru' stretches across 8 characters split between three vowels and 5 consonants. Splitting it apart reveals 4 words: x, in, shu, ru. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xinshuru.com

Page Load Overview

16.17s
Total Load Time
49
HTTP Requests
18
Domains
1.5 MB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh_CN
Text Length:430 chars
Detector Agreement:50%
Language mismatch: Declared as zh_cn but detected as zh

Website Classification

Primary Category

technology software49% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
49%
documentation technical
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13138.113.91.117Canada
AS54994Meteverse Limited.
9138.113.91.97Canada
AS54994Meteverse Limited.
9171.8.167.89China
9101.91.111.4China
AS4811China Telecom Group
9163.171.131.196Paris, Île-de-France, France
AS54994Meteverse Limited.
495--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T157F1642084F040B302D691C1B9666B2F7EC3EA0FC94B96A576BC1BD15FD7E91CC83056

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:Nad1GUDbl9T5J8Ec7avaxb/U/8T/4/49/D/Q/qZT/f8/RSDSDSDSDSP/t/Yo3fwq:OGAbVJerrZfOOOOYnFvNJwxpbka

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7770:gNkTwAKAUioK8pjiwkCucAhCAjGhGpoAAo5aAAi6EADATQBAmEMh65AAAqSAlBAgNEhUgABAwASyJIAlQLVUFcQxhoSjXOEQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffff00ffe3
Perceptual Hash:e699661966996699
Difference Hash:0000000000000004
Wavelet Hash:0f0f0f0efe00fcc0
Color Hash:#1f938f

Other Hashes

Crop Resistant:0000000000000004

Scan History

Scan history not available

Unable to load historical scan data