Security Scan Report: 1plusgamesvip.com

Redirected to: https://jl55ph.vip/?host=https://xi04eq.com?ch=64282

Submitted: Dec 11, 2025, 4:40:47 AMCompleted: Dec 11, 2025, 4:41:26 AMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 2 domains to perform 26 HTTP transactions. The main domain is jl55ph.vip.

Submitted URL: https://1plusgamesvip.com/oty3ytcyo

Effective URL: https://jl55ph.vip/?host=https://xi04eq.com?ch=64282Redirected

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Suspicious newly‑registered site promoting dubious job offers; treat as high risk.

Risk Factors
Newly registered domain
Unranked domain reputation
Suspicious promotional content suggesting a job scam
Redirect to an unrelated third‑party domain
Domain age information unavailable

Details

Page Title

JL55PH

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

Domain '1plusgamesvip.com' uses the commercial generic top-level domain (.com) with no subdomain. Its registrable label '1plusgamesvip' stretches across 13 characters containing 4 vowels alongside 8 consonants, notching one digit. Tokenizing the label suggests 4 words: 1, plus, games, vip. Median word length comes out to 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://1plusgamesvip.com/oty3ytcyo

Page Load Overview

15.73s
Total Load Time
26
HTTP Requests
2
Domains
762 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,310 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5172.67.215.208United States
AS13335CLOUDFLARENET
3172.67.217.81United States
AS13335CLOUDFLARENET
3104.21.53.171United States
AS13335CLOUDFLARENET
32606:4700:3035::6815:1840United States
AS13335CLOUDFLARENET
3104.21.24.64United States
AS13335CLOUDFLARENET
32606:4700:3031::ac43:d951United States
AS13335CLOUDFLARENET
32606:4700:3035::ac43:d7d0United States
AS13335CLOUDFLARENET
32606:4700:3033::6815:35abUnited States
AS13335CLOUDFLARENET
268--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EB526572D28E6ABF022342D025367FA9B15F0C6ADE2A44D1D5FF02E447E6EC2C877165

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:cvjUrleT/HlsxrTrqEiVyhOAuWhLORN+LDE6G5a+UpX4:cbUrUHlsxrTrqXsOch6RN+LD9gaBI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13416:AoUKA1hQBA1iIAWsBIRWFBJiUYgHEYFzQhgBMBxACEgICoLIhCRhhgk4oCVMRTsJZC4MQXWyBAUIUQawwJgahECSegAIrQBk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1819191919191918
Perceptual Hash:88f476d9313366cc
Difference Hash:11b3b13133b3b3b1
Wavelet Hash:19ffdb1919191919
Color Hash:#c59d87

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data