Security Scan Report: 86xxe54210.cfd

Redirected to: https://www.baidu.com/

Submitted: Nov 11, 2025, 3:29:06 AMCompleted: Nov 11, 2025, 3:30:14 AMpubliccompleted
Loading additional data...

Summary

This website contacted 51 IPs in 0 countries across 15 domains to perform 130 HTTP transactions. The main domain is baidu.com and was registered NaN years ago.

Submitted URL: https://86xxe54210.cfd/

Effective URL: https://www.baidu.com/Redirected

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Suspicious redirect from a brand‑new domain to Baidu; likely phishing attempt.

Risk Factors
Brand impersonation on an unusual, newly registered domain
Suspicious redirect from an unknown domain to a major brand
Critical domain age (<7 days) with no reputation
UNRANKED domain (not in Cisco Umbrella top 1 M)
Gibberish OCR text indicating possible social‑engineering tactics
Domain age information unavailable

Details

Page Title

百度一下,你就知道

Scan Type

public

Language

🇺🇸

English

(33% confidence)

Category

social media network

(33%)

Domain Information

The domain name '86xxe54210.cfd' uses the .cfd top-level domain. The core label '86xxe54210' covers 10 characters containing 1 vowel alongside two consonants; bonus characters include 7 digits. Splitting it apart reveals three words: 86, xxe, 54210. Median word length is 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://86xxe54210.cfd/

Page Load Overview

2.90s
Total Load Time
130
HTTP Requests
15
Domains
3.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:33%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:33%
Script Type:Latin
Text Length:255,406 chars
Detector Agreement:33%

Website Classification

Primary Category

social media network33% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
33%
documentation technical
32%
technology software
31%
news media journalism
30%
adult content
29%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
30103.235.47.212UnknownUnknown
2111.225.213.38UnknownUnknown
2183.60.227.38UnknownUnknown
21.71.157.38UnknownUnknown
261.170.57.38UnknownUnknown
2111.170.23.38UnknownUnknown
2180.97.198.38UnknownUnknown
2124.232.161.38UnknownUnknown
258.222.20.38UnknownUnknown
2103.235.46.102UnknownUnknown
13051--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T179E40961E7A52035B027C2BD7898764835758123CA538BBDFAEDB86C87C559223F3B1C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:eGZNC0WhRXDwiDTyTNv7FRbOTnTTTXTj8vr+Pq8/BT9wG:y0emiDTyTNv7FRbOTnTTTXTj8vr+Pq85

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:665854:wIQSHCd3YwBFPEoNxQRoxEqIssEhtBktKFYBSINEAUkwWgA1uZLIMQsxaKMiqsLcAOykUaQiMIEJITlWY8cAAniEEYpI1ECA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7fbffffffd381
Perceptual Hash:ed926d9239c4996c
Difference Hash:c80e121626083232
Wavelet Hash:3ee3c3c3d7d78080
Color Hash:#d279af

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data