Security Scan Report: muhe.net

Submitted: Mar 28, 2026, 8:24:34 PMCompleted: Mar 28, 2026, 8:25:54 PMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 3 countries across 8 domains to perform 152 HTTP transactions. The main domain is muhe.net and was registered NaN years ago.

Submitted URL: https://muhe.net/default/21.html

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Newly registered site with a password field but no username; likely a credential phishing page.

Risk Factors
Password field without username (credential harvesting pattern)
Domain age < 7 days (critical new domain)
Multiple redirects (7) indicating suspicious navigation
Domain age information unavailable

Details

Page Title

CloudFlare支持绑定国内银行信用卡,实测成功支付 - 木核网

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

documentation technical

(61%)

Domain Information

Within the network infrastructure generic top-level domain (.net), 'muhe.net' is registered with no subdomain. Its registrable label 'muhe' stretches across 4 characters containing two vowels alongside two consonants. Tokenizing the label suggests 2 words: mu, he. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://muhe.net/default/21.html

Page Load Overview

11.00s
Total Load Time
187
HTTP Requests
8
Domains
2.3 MB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:1,837 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical61% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

documentation technical
61%
technology software
59%
finance banking
58%
education learning
51%
entertainment media
48%

Detected Features

Articles
Comments
OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3261.170.77.82China
AS4812China Telecom Group
31104.21.92.238United States
AS13335Cloudflare, Inc.
31172.67.206.1United States
AS13335Cloudflare, Inc.
3154.36.211.0France
AS16276OVH SAS
31188.114.97.3United States
AS13335Cloudflare, Inc.
31172.67.173.89UnknownUnknown
1876--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DEF37E6343DE227EA543B2D59A226634BD86612FD793C564F8EC0D67AF41CB0EC2352C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:t5c1ToKeBaZoXLK2rrrrI7Px5lKrrrrUrrrrI7Px5lKrrrrl61rrvBBDM/:jkTf755l2755lF1c/

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:161177:IC4WoKgIQCEcAUAAoBBJAAolQsJgCANROcFMfROtgFI9C8AIUAsQQpCRmUcARIDkciQqkSAPcEAGrEQBEeBCeAIABEChEgC8

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:bf797dc7dff9e9e9
Perceptual Hash:cb944b8ab4b6cb94
Difference Hash:615b598cb8dbcbdb
Wavelet Hash:bf6c3c465e686868
Color Hash:#d27d2d

Other Hashes

Crop Resistant:615b598cb8dbcbdb

Scan History

Scan history not available

Unable to load historical scan data