Security Scan Report: pupdate.hgfedcbupdate.update.3210765update.98765432beta.wwwas.51-81-35-165.nip.io

Submitted: Apr 21, 2026, 12:29:12 PMCompleted: Apr 21, 2026, 12:30:53 PMpubliccompleted

Summary

This website contacted 6 IPs in 1 country across 7 domains to perform 18 HTTP transactions. The main domain is pupdate.hgfedcbupdate.update.3210765update.98765432beta.wwwas.51-81-35-165.nip.io and was registered 14 years ago.

Submitted URL: https://pupdate.hgfedcbupdate.update.3210765update.98765432beta.wwwas.51-81-35-165.nip.io/c.html

The Cisco Umbrella rank of the primary domain is #376,334 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 75%

5
Risk Score

Site displays the IXL brand on a low‑ranked, unrelated domain but shows no malicious activity; treat as suspicious.

Risk Factors
Low domain ranking with brand name present
Suspicious subdomain pattern (multiple concatenated words)
Potential typosquatting / brand impersonation
Safety Factors
No forms or credential collection
No malicious Indicators of Compromise
No JavaScript malware matches
No network IDS alerts
Domain age >5 years
Domain age information unavailable

Details

Page Title

Education IXL

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(43%)

Domain Information

Within the British Indian Ocean Territory country-code top-level domain (.io), 'pupdate.hgfedcbupdate.update.3210765update.98765432beta.wwwas.51-81-35-165.nip.io' is registered and includes subdomain 'pupdate.hgfedcbupdate.update.3210765update.98765432beta.wwwas.51-81-35-165'. Count 3 characters in 'nip' containing one vowel alongside two consonants. Breaking it apart gives 1 word: nip. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of cdn.jsdelivr.net

Page Load Overview

1.97s
Total Load Time
19
HTTP Requests
7
Domains
346 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:344 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network43% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
43%
education learning
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
451.81.35.165United States
AS16276OVH SAS
3216.58.206.72United States
AS15169Google LLC
3104.16.175.226United States
AS13335Cloudflare, Inc.
3142.250.186.42United StatesUnknown
3142.251.14.94United States
AS15169Google LLC
3104.18.0.22United States
AS13335Cloudflare, Inc.
196--

Page Statistics

19
Requests
7
Unique Domains
464.7 KB
Total Size

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14C13E936F111223E9497B6BA39EBF30CB3756101B2406560B8AD40B443DDEA556BEFDC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Npi90TpJyWC4rh/8If+MhPZr10zz/QzYqkt8eZs2Ao4hQy7LDMcDreHFNWQM:Ng90TfyW9Hf+MhPZr1Wz4zYqkt8eZshD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:44002:BNoQfgMEA6CCzYZA0hoAxEwQCSAsmMoKjkLuHGgN8WgAADwhBo0AVAMyDwSAY0cDJgFcQkM1jAigKX4GSAZEDZtJg4AhAKiY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:988000081c00003e
Perceptual Hash:997dfe7999290409
Difference Hash:30088498908480b4
Wavelet Hash:98ff007f1c7b003e
Color Hash:#40aabf

Other Hashes

Crop Resistant:30088498908480b4

Scan History

Scan history not available

Unable to load historical scan data