Security Scan Report: xxjiliplus.com

Redirected to: https://jili20.xyz/?host=https://ar3b4r.com?ch=66499

Site favicon
Submitted: Dec 30, 2025, 2:20:14 AMCompleted: Dec 30, 2025, 2:22:28 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 2 domains to perform 26 HTTP transactions. The main domain is jili20.xyz and was registered NaN years ago.

Submitted URL: https://xxjiliplus.com/zwvmn2f

Effective URL: https://jili20.xyz/?host=https://ar3b4r.com?ch=66499Redirected

AI Security Verdict

High Risk

Confidence: 90%

10
Risk Score

High‑risk phishing site impersonating Telegram; do not trust or provide any information.

Risk Factors
Brand impersonation of Telegram on an unranked, newly registered domain
Very new domain (<30 days) with brand claims
Domain change/redirection to unrelated site (jili20.xyz)
Lack of legitimate brand verification in final URL
Domain age information unavailable

Details

Page Title

PH2 - The Philippines' No.1 gaming platform

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

gambling betting

(55%)

Domain Information

The domain name 'xxjiliplus.com' uses the commercial generic top-level domain (.com) without a subdomain. Its registrable label 'xxjiliplus' stretches across 10 characters split between three vowels and seven consonants. It segments into four words: xx, jil, i, plus. Expect 2.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xxjiliplus.com/zwvmn2f

Page Load Overview

64.69s
Total Load Time
27
HTTP Requests
2
Domains
39 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,012 chars
Detector Agreement:100%

Website Classification

Primary Category

gambling betting55% confidence
Type: static
Method: ml+structural

All Detected Categories

gambling betting
55%
entertainment media
29%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9188.114.97.3United States
AS13335CLOUDFLARENET
9104.21.61.180United States
9188.114.96.3United States
AS13335CLOUDFLARENET
273--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T155627432D5DA62BB121382D066377F19F25B446BDF1A8491F1EE42E44FE6E92CC73058

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:nzs1vk3QzqBDQZhexqmbTWx49LKzdGpVP5+q8OS:nzrshexqmbKx49WzdWVh+Rp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:15130:ALJBSk6+DAIniQD0gk6F2BS8GLIiCDBiCgJNs4CIGDRYCgECUgI2IAjUQEGBAywYwYDVJwAAxARkibLaSRECBhAJ6ADRCpAj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00cfcdc5fdedc3c7
Perceptual Hash:bb31644c4e6e19d9
Difference Hash:555b5b0d3b1b1505
Wavelet Hash:00c3cbcbd9c9c3c3
Color Hash:#4068bf

Scan History

Scan history not available

Unable to load historical scan data