Security Scan Report: ipfs.io

Submitted: Jan 12, 2026, 9:06:49 AMCompleted: Jan 12, 2026, 9:08:02 AMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 10 domains to perform 15 HTTP transactions. The main domain is ipfs.io and was registered NaN years ago.

Submitted URL: https://ipfs.io/ipfs/bafybeigoig3zw4q4ktewtysvqxvulk44ysrjek55d4lgb4ood6bdekh2ii#[email protected]

The Cisco Umbrella rank of the primary domain is #104,019 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High risk phishing page hosted on IPFS; do not enter credentials

Risk Factors
IPFS-hosted content with credential harvesting form
Hidden password field indicating attempt to conceal input
Email address in URL fragment to lure users
Domain age information unavailable

Details

Page Title

Heh - Mail

Scan Type

public

Language

🇺🇸

English

(52% confidence)

Category

news media journalism

(27%)

Domain Information

The domain 'ipfs.io' uses the British Indian Ocean Territory country-code top-level domain (.io) while skipping any subdomain. The second-level label 'ipfs' is 4 characters long containing 1 vowel alongside 3 consonants. It segments into 2 words: i, pfs. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ipfs.io/ipfs/bafybeigoig3zw4q4ktewtysvqxvulk44ysrjek55d4lgb4ood6bdekh2ii#alqpthgt@heh.se

Page Load Overview

3.39s
Total Load Time
15
HTTP Requests
10
Domains
200 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:52%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:52%
Script Type:Latin
HTML Lang Attribute:???
Text Length:246 chars
Detector Agreement:100%
Language mismatch: Declared as ??? but detected as en

Website Classification

Primary Category

news media journalism27% confidence
Type: webapp
Method: ml+structural

All Detected Categories

news media journalism
27%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8104.17.24.14United States
AS13335CLOUDFLARENET
1216.58.206.68United States
AS15169GOOGLE
1104.18.10.207United States
AS13335CLOUDFLARENET
1142.250.185.138United States
AS15169GOOGLE
1151.101.130.137United States
AS54113FASTLY
1104.18.40.68United States
AS13335CLOUDFLARENET
1142.250.184.202United States
AS15169GOOGLE
1209.94.90.1United States
AS40680PROTOCOL
158--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B274F15BA1B910C11A07F4A926FB66407336F21BD80EDC58FA8E778CCFC524959A27CD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:HFWxYakFfBJKQe3JdKdHIH9qkmoB0Gw6kmK0dLdMFTeyAyj1gEMSUnfJIfINyHZU:9BBJKQe3GJxUoiuedEMS1VHQeH4iq

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:350627:Qeo08KhBQUnKhQKbyJNZSAsGwAWBZNFIAiBRAEmByQJAkgvcQ1QkVABBFDEzEAmogEUkBFhJAABAIWVRgZOSlRsEHNGusxAG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018181818000000
Perceptual Hash:d9992666733323cc
Difference Hash:0cb2b232334c3000
Wavelet Hash:3f3f181818e70f0f
Color Hash:#2d864f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data