Security Scan Report: jungle-whatapp.hl.cn

Redirected to:
https://hk.yahoo.com/?guccounter=1
Site favicon
Submitted: Aug 1, 2026, 8:14:49 AMCompleted: Aug 1, 2026, 8:15:59 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 5 domains to perform 3 HTTP transactions. The main domain is hk.yahoo.com and was registered NaN years ago.

Submitted URL: http://jungle-whatapp.hl.cn/

Effective URL: https://hk.yahoo.com/?guccounter=1Redirected

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

The site mimics Yahoo in meta tags but lacks credential collection and shows no malicious activity; overall low risk.

Risk Factors
Brand impersonation without credential collection
Cross‑domain redirect to a major brand
Safety Factors
Very old domain age
No malicious indicators (IoC, YARA, IDS)
Only a harmless search form
Domain age information unavailable

Details

Page Title

Yahoo

Scan Type

public

Language

🇰🇷

Korean

(59% confidence)

Category

government public service

(34%)

Domain Information

Domain 'jungle-whatapp.hl.cn' uses the Chinese country-code top-level domain (.hl.cn). Its registrable label 'jungle-whatapp' stretches across 14 characters holding 4 vowels versus 9 consonants; it also includes one hyphen. Tokenizing the label suggests three words: jungle, what, app. Average segment length settles at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://jungle-whatapp.hl.cn/

Page Load Overview

2.85s
Total Load Time
21
HTTP Requests
6
Domains
165 KB
Total Size

Language Analysis

Primary Language

🇰🇷Korean
Code: ko
Confidence:59%
Script:Hangul
Direction:ltr

Detection Details

Language Code:ko
Detection Confidence:59%
Script Type:Hangul
HTML Lang Attribute:zh-Hant-HK
Text Length:23,608 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as ko

Website Classification

Primary Category

government public service34% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
34%
adult content
26%
forum
20%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
563.34.111.223Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
454.194.186.47Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
487.248.119.251United Kingdom
AS203220Yahoo-UK Limited
487.248.119.252United Kingdom
AS203220Yahoo-UK Limited
485.120.255.176Moldova
AS48753Ava Host Srl
215--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CE943BB5A2135A3F120389F8B6A1372E91DBE72ECD53458CD3EC53642BDACE166D0168

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:EIDKhfAUFSvKUmvcMuB1I+3jxKN4q9Y5cLGU2RNWThH8OhDR+Af6tZJcRRqKw+Pp:iOBf3jmyZez8KBWyT

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:408342:s7R9SAFgAhRQW8oiKCQQAQQVKAgoOAMUAzCJeEjhaMChgyMMAoAgYi6NfUgDOAOwWYAMEMhigGZtc5ACwBQpYbyQURRJIAAI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfcfc9f9999999
Perceptual Hash:f9b0cecece303161
Difference Hash:6d9a989ba37b3b3b
Wavelet Hash:f7cf4f4159091919
Color Hash:#79d292

Scan History

Scan history not available

Unable to load historical scan data