Security Scan Report: vrchaterpmod.com

Submitted: Dec 13, 2025, 6:33:11 PMCompleted: Dec 13, 2025, 6:34:03 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 5 HTTP transactions. The main domain is vrchaterpmod.com and was registered NaN years ago.

Submitted URL: http://vrchaterpmod.com/chrome-extension_/majdfhpaihoncoakbjgbdhglocklcgno/fonts/FigtreeVF.html

AI Security Verdict

Confirmed Scam

Confidence: 92%

10
Risk Score

Site likely a phishing scam using GitHub branding on a brand‑new, unranked domain.

Risk Factors
Brand impersonation (GitHub) on an unrelated, newly‑registered domain
Circular redirect detected (indicates URL manipulation)
Domain age < 7 days (critical new domain)
Unranked domain with no established reputation
404 page used to mask malicious intent
Domain age information unavailable

Details

Page Title

Page not found · GitHub Pages

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(83%)

Domain Information

Within the commercial generic top-level domain (.com), 'vrchaterpmod.com' is registered with no subdomain. The core label 'vrchaterpmod' covers 12 characters split between 3 vowels and nine consonants. Segmentation suggests 4 words: vr, chater, p, mod. Median word length comes out to 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://vrchaterpmod.com/chrome-extension_/majdfhpaihoncoakbjgbdhglocklcgno/fonts/FigtreeVF.html

Page Load Overview

8.17s
Total Load Time
5
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:744 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software83% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
83%
documentation technical
60%
adult content
56%
government public service
32%
phishing scam
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2185.199.110.153United States
AS54113FASTLY
1185.199.108.153United States
AS54113FASTLY
1185.199.111.153United States
AS54113FASTLY
1185.199.109.153San Francisco, California, United States
AS54113FASTLY
54--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B0125C7F09E93305D8128E1539F267993D69480F9A866F6EB9AD1311CF8ED10E1A37CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:15wnb1iC9OA9XXMa9bYnr7JMkrALQDUnulGVopLAGCALQD6vnglET31iCLL3Z:1eB8Ht3DUulGmmv3D6vglETliCfJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9350:IaCAIAArqoAhAYQAigCkqITDJ+UjAlACGCKgAIDB4iYSUphoBA3A6IgfIAmE7AnWgg4toCFgEQMQiQEAWFQBSwIAihQgSBAL

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7c3e7ffffffff
Perceptual Hash:e666b39b8e666430
Difference Hash:080c0c0c00000000
Wavelet Hash:00000020f0f0f0f0
Color Hash:#79d284

Other Hashes

Crop Resistant:080c0c0c00000000

Scan History

Scan history not available

Unable to load historical scan data