Security Scan Report: tp8198.com

Redirected to:
https://tp8198.com/?refund=10000&amp%3Bemail=aaaa%40example.jp&amp%3Br...
Submitted: Nov 6, 2025, 8:34:16 AMCompleted: Nov 6, 2025, 8:35:09 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 13 HTTP transactions. The main domain is tp8198.com and was registered NaN years ago.

Submitted URL: https://tp8198.com/?refund=10000&[email protected]&ref=GWP9rniVnMtR

Effective URL: https://tp8198.com/?refund=10000&amp%3Bemail=aaaa%40example.jp&amp%3Bref=GWP9rniVnMtR&tz=UTC&lang=en-US&ts=1762418068507&confuse=kTzfYPKsfR1BBNesWs0ptePDBJX7I4J3Redirected

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Site is likely a phishing lure; do not proceed

Risk Factors
Social engineering detection by Google Safe Browsing
Unranked domain with low reputation
Recently registered domain (< 1 year)
Waiting page with no visible content (potential hidden redirect)
Domain age information unavailable

Details

Page Title

しばらくお待ちください

Scan Type

public

Language

🇯🇵

Japanese

(80% confidence)

Category

other

(50%)

Domain Information

The domain 'tp8198.com' uses the commercial generic top-level domain (.com) with no subdomain. The core label 'tp8198' covers 6 characters split between 0 vowels and 2 consonants; bonus characters include 4 digits. It segments into two words: tp, 8198. Expect three characters per word on average. 'tp' most strongly signals Indonesian. You will also see it in English and French contexts.

Screenshot

Security scan screenshot of https://tp8198.com/?refund=10000&amp;email=aaaa@example.jp&amp;ref=GWP9rniVnMtR

Page Load Overview

11.03s
Total Load Time
13
HTTP Requests
1
Domains
5 KB
Total Size

Language Analysis

Primary Language

🇯🇵Japanese
Code: ja
Confidence:80%
Script:Mixed
Direction:ltr

Detection Details

Language Code:ja
Detection Confidence:80%
Script Type:Mixed
HTML Lang Attribute:ja
Text Length:65 chars
Detector Agreement:100%

Website Classification

Primary Category

other50% confidence
Type: static
Method: ml+structural

All Detected Categories

other
50%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13143.20.185.212United States
AS47690Tngnet B.v.
131--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F9C1C7166BA30426280799E96BF9D6051251F313C10BDD943DEC51A88FC2DA8D8F37EC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:j+idu4qzSVnUJbh/alJjMBvVCyZn805AxaQEyJKYoBG80uSJgj6IlelOqiiYCZQ0:yiOzSVnUJbdaPjM1VCyZn805AxaQEyJL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5970:ARRAAATA4AImg+ZELBBAQEICjFEAiSQFHBIGEAUEjCAA6EAoSRXAACMIMIQEBoCvEIAUFgsAIAAIgAAAwMEAbAZIqBAgqICE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:b38ccc3333cccc33
Difference Hash:0000000808000000
Wavelet Hash:f0f0f0e0c0c0cccc
Color Hash:#8479d2

Other Hashes

Crop Resistant:0000000808000000

Scan History

Scan history not available

Unable to load historical scan data