Security Scan Report: r4.wickyhui.com

Submitted: Feb 1, 2026, 1:26:00 PMCompleted: Feb 1, 2026, 1:27:08 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is r4.wickyhui.com and was registered NaN years ago.

Submitted URL: https://r4.wickyhui.com/?token=utbT92yUigzULwyT9gza1gCKn3zLHwBa

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

Potential phishing login page; do not enter credentials.

Risk Factors
Hidden password field (credential harvesting technique)
Login form on a domain with no clear legitimate purpose
Unranked domain (not in Cisco Umbrella top 1M) combined with suspicious form
Domain age information unavailable

Details

Page Title

验证处理中

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

cryptocurrency blockchain

(65%)

Domain Information

The domain name 'r4.wickyhui.com' uses the commercial generic top-level domain (.com) with subdomain 'r4'. The registrable portion 'wickyhui' spans 8 characters with 3 vowels and five consonants. Word splitting yields 3 words: wick, y, hui. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://r4.wickyhui.com/?token=utbT92yUigzULwyT9gza1gCKn3zLHwBa

Page Load Overview

1.13s
Total Load Time
4
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:cn
Text Length:336 chars
Detector Agreement:50%
Language mismatch: Declared as cn but detected as zh

Website Classification

Primary Category

cryptocurrency blockchain65% confidence
Type: webapp
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
65%
government public service
56%
documentation technical
55%
finance banking
55%
technology software
54%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4172.67.205.1United States
AS13335Cloudflare, Inc.
41--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F112415B63F320926827E9F72BDB075A32A4C107C50ECD547FDC62448F89DA6BA52B4C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:AS1iPlOv7CMPZwq907npMy+RJMmt0VDZwZ3TtN:hNQxZ+3r

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9798:OoJVoAECFJI/kqBAEgU5sSUCLAXFGDhlo0Y4pYIQhmQBFIFjGE4AWIIATiAMKQiTJGHgJAWA0FJEq3AChCgkWSRDkSYCciJL

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffcece0e0e0e0ff
Perceptual Hash:d6b6a869a96cbc12
Difference Hash:320c2c0000000000
Wavelet Hash:dfe4cce0c0c0c0ff
Color Hash:#2dd23d

Other Hashes

Crop Resistant:320c2c0000000000

Scan History

Scan history not available

Unable to load historical scan data