Security Scan Report: nbuqiweojtkasg.shop

Redirected to:
https://nbuqiweojtkasg.shop/#/pages/login/login
Submitted: May 8, 2026, 3:17:15 PMCompleted: May 8, 2026, 3:18:50 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 3 countries across 3 domains to perform 23 HTTP transactions. The main domain is nbuqiweojtkasg.shop.

Submitted URL: https://nbuqiweojtkasg.shop/

Effective URL: https://nbuqiweojtkasg.shop/#/pages/login/loginRedirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

The site is a newly‑registered, unranked domain serving heavily obfuscated JavaScript and triggering critical malware IDS alerts, indicating a high‑risk malware distribution operation.

Risk Factors
Newly registered domain (<7 days)
Unranked / low‑reputation domain
Critical IDS alerts indicating malware C2 and data exfiltration
Highly obfuscated JavaScript
Absence of legitimate content or functional forms
Domain age information unavailable

Details

Page Title

首页

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

government public service

(37%)

Domain Information

Within the commerce-oriented generic top-level domain (.shop), 'nbuqiweojtkasg.shop' is registered without a subdomain. The core label 'nbuqiweojtkasg' covers 14 characters with five vowels and 9 consonants. Word splitting yields 7 words: n, bu, qi, we, oj, tka, sg. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://nbuqiweojtkasg.shop/

Page Load Overview

8.22s
Total Load Time
10
HTTP Requests
3
Domains
1 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:99 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service37% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

government public service
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
464.32.26.228Chicago, Illinois, United States
AS46844Sharktech
3111.231.169.247Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
3156.240.111.65Hong Kong, Hong Kong
AS140227Hong Kong Communications International Co., Limited
103--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18452A8317448231556378E05795BE33912279162DB028AFCB7AC3A1A8FCE4EF0DF6B94

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:lcIdr5GmKZXEnLijigQ59J1fvDCjx4wi03mVjx4wi03mMWJcbagSjsvEv+xOTzhj:2rdZXEnLijihbewJiAUTzhBeC3D

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13815:IQeJpELYwJAwDwnAoIEHaHACkgpjgEjQ1RLEsQAA2CLlTSRLIoJAQJPMEGxUEoYlEINuOJhBJEY2CkmNUIFhYR0TAEkHL5Bi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fffffe700c3e3f3
Perceptual Hash:a69b8c3326a5994f
Difference Hash:800800080d161606
Wavelet Hash:5fffffe700000303
Color Hash:#7a1f93

Other Hashes

Crop Resistant:800800080d161606

Scan History

Scan history not available

Unable to load historical scan data