Security Scan Report: 208win2.vip

Submitted: Feb 25, 2026, 9:55:11 AMCompleted: Feb 25, 2026, 9:56:53 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 56 HTTP transactions. The main domain is 208win2.vip and was registered NaN years ago.

Submitted URL: https://208win2.vip/

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

New unranked gambling site with no forms; moderate risk due to brand‑new domain.

Risk Factors
Brand‑new domain (<1 day old) – high likelihood of malicious intent
Domain not listed in Cisco Umbrella top 1M (unranked)
Abnormal Content‑Encoding header alerts from Suricata
Safety Factors
No forms collecting credentials or payment data
No malicious Indicators of Compromise detected
Served over HTTPS
No external third‑party domains referenced
Domain age information unavailable

Details

Page Title

208win – Top Online Slot Games

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name '208win2.vip' uses the .vip top-level domain and has no subdomain. The registrable portion '208win2' spans 7 characters containing 1 vowel alongside 2 consonants, plus four digits. Tokenizing the label suggests 3 words: 208, win, 2. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://208win2.vip/

Page Load Overview

6.29s
Total Load Time
109
HTTP Requests
5
Domains
958 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:30 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
25118.25.42.241Germany
21163.181.58.167Frankfurt am Main, Hesse, Germany
AS24429Zhejiang Taobao Network Co.,Ltd
21188.114.97.3United States
AS13335Cloudflare, Inc.
21104.21.68.33United States
AS13335Cloudflare, Inc.
21104.18.23.132United States
AS13335Cloudflare, Inc.
1095--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A984C766A0591189BA37CB66C2CC9A18563CE633C1530DDDB289341E8FC3ED933A7767

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:Jq1ZmgcaqJDCfYGsfHj3U6a00Gnw47ZjDAnIgmg:Jq1ZaJD6sKGnwmjDAnIgmg

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:375340:KgoKLCKaJIPWDAVDfgUICAAIFJaFAHAmQhgEMbQDDeABCwM6kA5BQMZBDIkBVB9sMcCVgFXWUFAWFBgENMkEKBkKhvwaOBwD

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c3c3c3dbdbc3c3c3
Perceptual Hash:c999666699996666
Difference Hash:4c4c143232144c4c
Wavelet Hash:2424243c3c242424
Color Hash:#87c595

Scan History

Scan history not available

Unable to load historical scan data