Security Scan Report: www.bqzl36.vip

Redirected to:
https://www.ukuzvu.vip:9013/register89744?i_code=73104968
Site favicon
Submitted: Sep 22, 2026, 7:47:32 AMCompleted: Sep 22, 2026, 7:48:06 AMpubliccompleted

This website contacted 4 IPs in 4 countries across 4 domains to perform 39 HTTP transactions. The main domain is ukuzvu.vip and was registered 1 year 2 months ago.

Submitted URL: https://www.bqzl36.vip

Effective URL:

https://www.ukuzvu.vip:9013/register89744?i_code=73104968
Redirected

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Offshore gambling registration page impersonating 开云体育/Real Madrid on throwaway domains, redirecting across hosts and carrying a Formbook malware indicator; do not enter credentials.

Risk Factors (5)
Impersonation of another entity's brand (开云体育 / Real Madrid) on a non-official domain
Credential-collecting registration form with two password fields
Cross-domain redirect to unrelated host on a non-standard port (:9013) with affiliate code
Threat-intel match for Formbook malware family on the entry domain (single-source, unverified)
Gambling/betting operation combined with ambiguous OCR/noindex-poor content quality
Domain age information unavailable

Details

Page Title

官方区域合作伙伴    开云体育官网-皇家马德里足球俱乐部

Scan Type

public

Domain Name Analysis

You're looking at domain 'www.bqzl36.vip' on the .vip top-level domain, featuring subdomain 'www'. The second-level label 'bqzl36' is 6 characters long holding zero vowels versus 4 consonants, along with 2 digits. Word splitting yields three words: bq, zl, 36. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.bqzl36.vip

Page Load Overview

11.54s
Total Load Time
998 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Text Length:126 chars
Detector Agreement:50%

Website Classification

Primary Category

gambling betting31% confidence
Type: spa
Method: ml+structural

All Detected Categories

gambling betting
31%
adult content
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1243.251.114.42Australia
AS132825MYTEK TRADING PTY LTD
9154.220.10.112Seychelles
AS135097LUOGELANG (FRANCE) LIMITED
943.243.240.241Hong Kong
AS153494XRUI TECHNOLOGY LIMITED
914.0.58.130Cdnetworks · CDNBangkok, Bangkok, Thailand
AS54994Meteverse Limited.
394--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D9C23B334909B4730D3A3C9AE5E26A4E190CD21AD56346C4F2EDF6EAD6DEF0A5C0F494

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:dEhxQCp8MZThmqdOTBtSk99MjFVuA+xvo:dohJdOFLMjFVsvo

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:26627:ZsIRChopgQQMGBEIgAACGPAgyXU4JZBSB2C+AhZg4lHG0CS5MAhTgJQMPwicJIAwEXCUaUiECkyUKxQkQKPJGDCiEQmBBDFO

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff1818181000
Perceptual Hash:cc8cb306369a9de6
Difference Hash:e0f0b2b2b2b2b0e0
Wavelet Hash:ffffff1818181800
Color Hash:#784f3a

Other Hashes

Crop Resistant:e0f0b2b2b2b2b0e0

Scan History

Scan history not available

Unable to load historical scan data