Security Scan Report: 24kland8.win

Redirected to: https://www.24kland8.win/#/

Site favicon
Submitted: Dec 14, 2025, 8:56:08 AMCompleted: Dec 14, 2025, 8:57:00 AMpubliccompleted
Loading additional data...

Summary

This website contacted 36 IPs in 2 countries across 6 domains to perform 80 HTTP transactions. The main domain is 24kland8.win and was registered NaN years ago.

Submitted URL: https://24kland8.win/

Effective URL: https://www.24kland8.win/#/Redirected

AI Security Verdict

Low Risk

Confidence: 70%

3
Risk Score

New site offering unknown Android app download; likely malicious, avoid installing

Risk Factors
Newly registered domain (<7 days) distributing executable content
Potential malicious app download
Safety Factors
No login or payment forms
No known malicious Indicators of Compromise
No brand impersonation
Domain age information unavailable

Details

Page Title

24K

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

gambling betting

(57%)

Domain Information

Domain '24kland8.win' uses the .win top-level domain without a subdomain. Its registrable label '24kland8' stretches across 8 characters holding 1 vowel versus 4 consonants; it also includes 3 digits. It segments into four words: 24, kl, and, 8. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://24kland8.win/

Page Load Overview

16.19s
Total Load Time
80
HTTP Requests
6
Domains
7.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:zh-CN
Text Length:858 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

gambling betting57% confidence
Type: static
Method: ml+structural

All Detected Categories

gambling betting
57%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10111.231.169.247Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
28.6.112.0United States
AS13335CLOUDFLARENET
2104.21.29.155United States
AS13335CLOUDFLARENET
2172.67.149.109United States
AS13335CLOUDFLARENET
2119.167.249.58China
AS4837CHINA UNICOM China169 Backbone
28.47.69.0United States
AS13335CLOUDFLARENET
2124.221.80.91Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
2221.204.15.60China
AS4837CHINA UNICOM China169 Backbone
2122.188.44.139China
AS4837CHINA UNICOM China169 Backbone
22408:4005:30a:4302:6218:d8d9:db29:65c1Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
8036--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T199551A31314F381B7037C89CB5C4E50C291BF713D1130AE9A6563A7E8EDBAD622B6B65

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:i2wXV8/KIpT9hGCwjh0jBlA3Hmzuod1S5KTUJVQjG66ZW22dbhBpE:G8/KIpTmotlOmz9dc5KTUJVM22dy

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1346474:A7FRIkhAaagIUMGRCIIwK8AnNgMomQBkJUHRMkDMgaUSEQAcAIAYTk0SsF4YTIQACgSZ0IRCKAooqwAQgFJUAaCCIBEEYVyS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:103c3c3c3c3c3c3c
Perceptual Hash:ce646c64646c7c79
Difference Hash:6669797969797979
Wavelet Hash:303c3c3c3c3d3d3c
Color Hash:#53ac72

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data