Security Scan Report: poe.shtianli.net

Submitted: Jan 3, 2026, 10:08:42 PMCompleted: Jan 3, 2026, 10:09:50 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is poe.shtianli.net and was registered NaN years ago.

Submitted URL: https://poe.shtianli.net/?token=abFT92yUigzULwyT9gzajhAa

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Likely phishing site collecting credentials; do not use.

Risk Factors
Hidden password field (type="password" with CSS display:none)
Credential harvesting form on a low‑reputation, unranked domain
Unranked domain despite being older than 180 days
Domain age information unavailable

Details

Page Title

正在处理

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

technology software

(78%)

Domain Information

The domain 'poe.shtianli.net' uses the network infrastructure generic top-level domain (.net); it also runs on subdomain 'poe'. Its registrable label 'shtianli' stretches across 8 characters holding three vowels versus five consonants. Breaking it apart gives three words: sh, tian, li. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://poe.shtianli.net/?token=abFT92yUigzULwyT9gzajhAa

Page Load Overview

2.01s
Total Load Time
4
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:cn
Text Length:112 chars
Detector Agreement:100%
Language mismatch: Declared as cn but detected as zh

Website Classification

Primary Category

technology software78% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
78%
government public service
56%
documentation technical
53%
cryptocurrency blockchain
51%
healthcare medical
33%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4172.67.207.119United States
AS13335CLOUDFLARENET
41--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A9A1C62371412452B167EAE92CF2475E7255C601E20BD6B8BEFC22A8D3CDD95DE33388

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:AS1DyzJpMgj5aNXyRzYD84gfpy2UwxnQK88/outeX1dMD:AS1V7XOzY1+UwZ3TtF

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4861:CYJQBIAAMEIAEQEAG0KAIOIBABhAQBAAEASgECwEAFEQFAAQgaMBEAAQgADADAABwzkBRSg4IBMEowgAAWCEQSICADKAIGGA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff020303000000ff
Perceptual Hash:b525da5acab4b514
Difference Hash:391636367e3878aa
Wavelet Hash:ff030303000e7fff
Color Hash:#537aac

Scan History

Scan history not available

Unable to load historical scan data