Security Scan Report: 312v2s5d.sbs

Submitted: Mar 10, 2026, 4:16:13 AMCompleted: Mar 10, 2026, 4:17:50 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 3 domains to perform 1 HTTP transaction. The main domain is 312v2s5d.sbs and was registered NaN years ago.

Submitted URL: http://312v2s5d.sbs/

AI Security Verdict

Confirmed Scam

Confidence: 92%

10
Risk Score

Telegram‑branded QR login page on a brand‑new unranked domain – likely phishing; do not use.

Risk Factors
Brand impersonation of Telegram on a non‑official domain
Domain registered only 1 day ago (critical new domain)
Domain is unranked/low reputation
Use of QR‑code login flow to harvest credentials
Mismatch between displayed brand and domain name
Domain age information unavailable

Details

Page Title

Telegram

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(82%)

Domain Information

Domain '312v2s5d.sbs' uses the .sbs top-level domain without a subdomain. The core label '312v2s5d' covers 8 characters holding 0 vowels versus 3 consonants; bonus characters include 5 digits. Breaking it apart gives six words: 312, v, 2, s, 5, d. Average segment length settles at one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://312v2s5d.sbs/

Page Load Overview

8.18s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:732 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software82% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
82%
documentation technical
57%
adult content
51%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2172.67.158.141United States
AS13335Cloudflare, Inc.
1149.154.167.99United States
32--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10CF14F62F764E83A2357027D35D1F10E87E2A447D381AA50B9E972E50F8FDA780EB315

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ujtSoUZZUG70t13OQY0yOR5qc75ZhE58h:KtSGsk3OQ9yOR5RHd

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7812:GFDCIRAMLkKAFKgqEEWDAIYAziRxriQRkBEymA1oJAMLtqBARADRBZJAUmDEEFkDPADIHtReoiKghAUgEFyGACvSTSiKBiEM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b323cccc3333cccc
Difference Hash:00000c0c08000000
Wavelet Hash:fce4e4e420383030
Color Hash:#6fac53

Other Hashes

Crop Resistant:00000c0c08000000

Scan History

Scan history not available

Unable to load historical scan data