Security Scan Report: bhty888.vip

Submitted: Dec 12, 2025, 12:53:44 AMCompleted: Dec 12, 2025, 12:54:31 AMpubliccompleted

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 5 HTTP transactions. The main domain is bhty888.vip and was registered 8 months ago.

Submitted URL: http://bhty888.vip/

AI Security Verdict

Moderate Risk

Confidence: 70%

6
Risk Score

Suspicious site due to circular redirect and brand‑new unranked domain

Risk Factors
Circular redirect detected
Brand new domain (<7 days)
Unranked domain with no reputation
Domain age information unavailable

Details

Page Title

bhty888.vip

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(82%)

Domain Information

The domain name 'bhty888.vip' uses the .vip top-level domain without a subdomain. The second-level label 'bhty888' is 7 characters long with zero vowels and 4 consonants, along with three digits. Breaking it apart gives three words: bh, ty, 888. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of bhty888.vip

Page Load Overview

8.18s
Total Load Time
5
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:729 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software82% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
82%
documentation technical
64%
adult content
55%
phishing scam
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2104.21.40.46United States
AS13335CLOUDFLARENET
1172.67.175.190United States
AS13335CLOUDFLARENET
12606:4700:3030::ac43:afbeUnited States
AS13335CLOUDFLARENET
12606:4700:3035::6815:282eUnited States
AS13335CLOUDFLARENET
54--

Page Statistics

5
Requests
4
Unique Domains
0.0 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T107048E77329A063986558498E05B830D9F20B143F506C9BC79BCBAD9BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:BfQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIszJ2bMy8Olda:mhoC9JSqzzbs6o3Sj3gcrsV2eAA

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:187098:QlBCAAQ0mARNCVwDWCHDgQoKUhIYEaABERCNgYFQEgoFUdwsCENQFDCCh04BiC0oQkEkAgGABoSIjD4IYDgJeJLghtBWhwoA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc7c7c3d3ffffff
Perceptual Hash:b1339acccc939365
Difference Hash:0018181616000000
Wavelet Hash:fcdcc4c4c0f8f0f0
Color Hash:#2d3dd2

Other Hashes

Crop Resistant:0018181616000000

Scan History

Scan history not available

Unable to load historical scan data