Security Scan Report: red.hbhtxs.com

Submitted: Mar 23, 2026, 10:04:45 AMCompleted: Mar 23, 2026, 10:06:03 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is red.hbhtxs.com and was registered NaN years ago.

Submitted URL: https://red.hbhtxs.com/?token=kaa0vMBUuMC1TwzZbezLvMCJTMCH52Aa

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page that steals entered credentials via JavaScript exfiltration.

Risk Factors
Credential harvesting form (email + password)
JavaScript exfiltrates credentials to an external domain
Domain age information unavailable

Details

Page Title

等待确认

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

cryptocurrency blockchain

(53%)

Domain Information

You're looking at domain 'red.hbhtxs.com' on the commercial generic top-level domain (.com); it also runs on subdomain 'red'. The registrable portion 'hbhtxs' spans 6 characters containing zero vowels alongside six consonants. Splitting it apart reveals four words: h, bh, tx, s. The median word length lands at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://red.hbhtxs.com/?token=kaa0vMBUuMC1TwzZbezLvMCJTMCH52Aa

Page Load Overview

0.68s
Total Load Time
2
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:zh-CN
Text Length:1,220 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

cryptocurrency blockchain53% confidence
Type: webapp
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
53%
technology software
47%
government public service
47%
blog personal website
47%
documentation technical
46%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1188.114.96.3United States
AS13335Cloudflare, Inc.
1188.114.97.3United States
AS13335Cloudflare, Inc.
22--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DB72C656AC731DA7A613D0DA93FF87853148A303C04ECA217F6C4B888F89D60B9B235D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:Srxa9yQigX13AfHjFt9Nx3Nf2RbxV9wSl/th9RbQPy:d9yQigXGfHjFt9Nx3Nf2RbxV9wSl/th5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17398:SHWiCrZhBJHYpRCG5qAUHQS7PNEQOOABAInkqirWAJCAghVpBzPMnnIRNEskmCQRZHIIwAKlaoDqBDVowSgisUklHIDAgT5Y

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1818081810100800
Perceptual Hash:cc993364999b6666
Difference Hash:103a081224240800
Wavelet Hash:d8d8c8d81b133333
Color Hash:#342d86

Other Hashes

Crop Resistant:103a081224240800

Scan History

Scan history not available

Unable to load historical scan data