Security Scan Report: www.wangmeng66.top

Submitted: Sep 17, 2026, 9:47:43 AMCompleted: Sep 17, 2026, 9:48:03 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Undeveloped default Apache2 Ubuntu page on a young, unranked .top domain whose host and addresses carry abuse-reputation flags and Spamhaus-listed IDS traffic. No forms, impersonation, or malware in the content itself; risk is environmental, not on-page.

Risk Factors
ET DROP Spamhaus DROP listed traffic detected by network IDS
HIGH IDS alerts for DNS and HTTP requests to a *.top domain tagged as potentially bad traffic
Bare, undeveloped default Apache server page left publicly reachable (server/fingerprint disclosure)
Domain not present in Cisco Umbrella top 1M rankings
Safety Factors
No forms of any kind — zero password, email, or payment fields
No credential exfiltration or cross-origin form submission
No YARA JavaScript malware or obfuscated script patterns
No known phishing kit signatures in the kit roster
Page content is a standard Ubuntu/Apache welcome page, not brand impersonation
Domain age information unavailable

Details

Page Title

Apache2 Ubuntu Default Page: It works

Scan Type

public

Domain Name Analysis

The domain 'www.wangmeng66.top' uses the .top top-level domain and includes subdomain 'www'. Its registrable label 'wangmeng66' stretches across 10 characters split between 2 vowels and six consonants, plus 2 digits. Splitting it apart reveals three words: wang, meng, 66. The median word length lands at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.wangmeng66.top

Page Load Overview

1.62s
Total Load Time
4 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:54%
Script:Latin
Direction:ltr

Detection Details

Text Length:4,184 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software35% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
35%
documentation technical
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
345.125.35.230Hong Kong
AS154206CDN1.com Limited
0123.254.105.38Hong Kong
AS154206CDN1.com Limited
045.125.35.225Hong Kong
AS154206CDN1.com Limited
045.125.35.232Hong Kong
AS154206CDN1.com Limited
045.125.35.234Hong Kong
AS154206CDN1.com Limited
35--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12322B869E6E521227203806177F2BF532F755183AD0E962931FE119C8FC67F786A3389

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:ZAL6evwSMhQKrFih8Wdp3667KeQAm+czjJX9awT9OnBun3nXJgJF2Oyloet2nnSV:Zq6ywSGQKJUnpJKeOJYoE2OyLAI1d

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:10493:0t3AMS0AICYCEkLQDHR3AwQJBagYAjmtjcSiIMQUQAgIAFLQAqDJUIJjABKhChYKQeRCNZmhAaa6geJSgEJMAAyFqB0gpgYM

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3c3c001c3c3c2c00
Perceptual Hash:92c766cb9c33346c
Difference Hash:686894387078499d
Wavelet Hash:3e3e061e3c3c2e03
Color Hash:#ac53a2

Other Hashes

Crop Resistant:686894387078499d

Scan History

Scan history not available

Unable to load historical scan data