Security Scan Report: tshirtperu.com

Redirected to: blob:https://helis.vn/653483fb-7809-491e-94ff-7d0866023a13

Submitted: Nov 13, 2025, 1:30:49 PMCompleted: Nov 13, 2025, 1:32:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 51 IPs in 0 countries across 10 domains to perform 47 HTTP transactions. The main domain is and was registered NaN years ago.

Submitted URL: https://tshirtperu.com/wp-admin/jsss/tmpv.html

Effective URL: blob:https://helis.vn/653483fb-7809-491e-94ff-7d0866023a13Redirected

AI Security Verdict

Moderate Risk

Confidence: 70%

4
Risk Score

Site shows signs of a compromised WordPress page but lacks credential collection; proceed carefully.

Risk Factors
Compromised WordPress path (wp-admin) suggests possible site hijack
Unranked domain status combined with suspicious URL structure
Suspicious verification message displayed to users
Safety Factors
Domain age is over 8 years (well‑established)
No credential or payment forms detected
No malicious Indicators of Compromise matches found
Domain age information unavailable

Details

Page Title

One moment, please...

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(28%)

Domain Information

Domain 'tshirtperu.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. Count 10 characters in 'tshirtperu' with 3 vowels and seven consonants. Tokenizing the label suggests three words: t, shirt, peru. Expect 4 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tshirtperu.com/wp-admin/jsss/tmpv.html

Page Load Overview

17.92s
Total Load Time
47
HTTP Requests
10
Domains
1.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,084 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking28% confidence
Type: spa
Method: ml+structural

All Detected Categories

finance banking
28%
e-commerce
25%
social_media
25%

Detected Features

Login Form
Search
Payment

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
47104.17.25.14UnknownUnknown
0172.66.44.108UnknownUnknown
0184.24.77.36UnknownUnknown
0107.6.164.22UnknownUnknown
0172.66.47.148UnknownUnknown
0142.250.185.202UnknownUnknown
0172.217.18.6UnknownUnknown
0216.58.206.42UnknownUnknown
02.17.180.241UnknownUnknown
0142.250.186.130UnknownUnknown
4751--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17D32E68CAFD43270F62203EE73BF6919132565D32448C485F54DEEE0BF4B68D8597A2A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:CXHNsGeTHQpD+da6+8QPUV7lrDyjFrxzTYQZ0+tE+Bz21UYNoVBZJQly:CXX+/zV7SFZNC+c1UYNq+y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11675:gmEAaQThgIUAhm9RyABBgLM80C+xE5KqFhDGrCgSoh4EAKQgLViTQiByAqiFPKjA7hIgRCxGYBXTgFAIQAMLEQLfAhAgwgBP

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff81ffffffff
Perceptual Hash:bf2fc0c03f3fc0c0
Difference Hash:0000012301000000
Wavelet Hash:ffffff8100000000
Color Hash:#d27992

Other Hashes

Crop Resistant:0000012301000000

Scan History

Scan history not available

Unable to load historical scan data