Security Scan Report: h516.lat

Redirected to: https://ld.hggj.live/hg/#/pages/index/index

Site favicon
Submitted: Oct 27, 2025, 1:23:45 PMCompleted: Oct 27, 2025, 1:25:01 PMpubliccompleted
Loading additional data...

Summary

This website contacted 31 IPs in 3 countries across 7 domains to perform 159 HTTP transactions. The main domain is ld.hggj.live.

Submitted URL: http://h516.lat/

Effective URL: https://ld.hggj.live/hg/#/pages/index/indexRedirected

AI Security Verdict

Safe Website

Confidence: 92%

0
Risk Score

No suspicious activity detected; site appears legitimate.

Safety Factors
Absence of credential or payment collection fields
No malicious Indicators of Compromise detected
No brand impersonation or typoesquatting observed
Redirects are straightforward and terminate at a final destination
Domain age information unavailable

Details

Page Title

皇宫国际

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

suspicious phishing

(57%)

Domain Information

The domain 'h516.lat' uses the .lat top-level domain and has no subdomain. The core label 'h516' covers 4 characters split between zero vowels and one consonant, plus three digits. Segmentation suggests two words: h, 516. The median word length lands at two characters. 'h' most strongly signals Breton. You will also see it in Chinese (Zhuyin) and Hungarian contexts. Net impression: Breton phrase with character flair.

Screenshot

Security scan screenshot of http://h516.lat/

Page Load Overview

19.06s
Total Load Time
159
HTTP Requests
7
Domains
40 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:138 chars
Detector Agreement:100%

Website Classification

Primary Category

suspicious phishing57% confidence
Type: static
Method: ml+structural

All Detected Categories

suspicious phishing
57%
other
34%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9154.23.151.47Hong Kong, Hong Kong
AS140224NEBULA
5154.23.151.46Hong Kong, Hong Kong
AS140224NEBULA
545.202.215.199Hong Kong, Hong Kong
AS40065CNSERVERS
5154.23.151.45Hong Kong, Hong Kong
AS140224NEBULA
5154.23.151.49Hong Kong, Hong Kong
AS140224NEBULA
5124.222.174.117Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
538.182.238.161United States
AS140224NEBULA
538.182.238.162United States
AS140224NEBULA
534.92.18.179Hong Kong, Hong Kong
AS396982GOOGLE-CLOUD-PLATFORM
538.182.238.160United States
AS140224NEBULA
15931--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F803E2246442345B6433C9C0F0A76F09B4A7AF3AC65C5B79A3791AA55FCBCE44C3B368

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:i84dOJ0nSDmrvDU+bw/vDU+b0ty5d+bUUUUCUUUUUUUfUUU4UUlUUUUUWUUDEy68:iLOJ0nSDavDU1/vDU/y5wbUUUUCUUUUK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:38096:GI6CDOGQAoAwoAGCoSXEiEB6WwiUczEiuCHQIJImhIKIEAgpAkiTLTwcysAyIAfKgBuaDBkTQzgcBRnCaQwAQWUBDBMOjDEB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:01075fced8f9fefc
Perceptual Hash:b32227675a35c8dc
Difference Hash:4ecf96181173e2e0
Wavelet Hash:00070f8e98b9fefc
Color Hash:#8788c5

Other Hashes

Crop Resistant:4ecf96181173e2e0

Scan History

Scan history not available

Unable to load historical scan data