Security Scan Report: hua456t.xyz

Redirected to:
https://hua456t.xyz/
Submitted: Apr 8, 2026, 11:06:33 AMCompleted: Apr 8, 2026, 11:07:57 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 3 domains to perform 3 HTTP transactions. The main domain is hua456t.xyz and was registered NaN years ago.

Submitted URL: http://hua456t.xyz/

Effective URL: https://hua456t.xyz/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Site impersonates Telegram with a QR‑code login on a brand‑new, unranked domain; likely phishing.

Risk Factors
Brand impersonation (Telegram) on a mismatched domain
Newly registered domain (<7 days old)
Unranked domain with no reputation
QR‑code login phishing page
Lack of legitimate content or attribution
Domain age information unavailable

Details

Page Title

Secure Messenger

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

The domain name 'hua456t.xyz' uses the open generic top-level domain (.xyz) without a subdomain. Count 7 characters in 'hua456t' with 2 vowels and two consonants; bonus characters include three digits. It segments into 3 words: hua, 456, t. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://hua456t.xyz/

Page Load Overview

1.86s
Total Load Time
27
HTTP Requests
3
Domains
301 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:235 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1464.29.17.195United States
AS16509Amazon.com, Inc.
13149.154.167.99Amsterdam, North Holland, Netherlands
AS62041Telegram Messenger Inc
272--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D15387A85DD85B298A18D78EC5DF1DEC1089C1C68808805FBB757AA7C67CD34ACBC357

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:KtSGsB3OQ9LiK5RHjtw0SmlysXbmy3nhCutQtqtnnLzt4:4dsf55w0SmlysXbmy3nhCutQtqtLzy

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:61533:kgRAMEEFsEQUOArgI4SEJQoBEoEF1oSBEiCgSYBgIEBYkAEdrhIeAY8KIFC0CgIBEFITJoEqACFokGCCCmLdaNgSQkcCiIkE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7e7ffffff
Perceptual Hash:b333668c9999cccc
Difference Hash:0c4d4d080c000000
Wavelet Hash:20202424233b3f3f
Color Hash:#8bc587

Other Hashes

Crop Resistant:0c4d4d080c000000

Scan History

Scan history not available

Unable to load historical scan data