Security Scan Report: bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs.dweb.link

Submitted: Dec 1, 2025, 1:09:32 PMCompleted: Dec 1, 2025, 1:10:48 PMpubliccompleted
Loading additional data...

Summary

This website contacted 19 IPs in 2 countries across 7 domains to perform 12 HTTP transactions. The main domain is bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs.dweb.link.

Submitted URL: https://bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs.dweb.link/

The Cisco Umbrella rank of the primary domain is #174,969 of the top 1 million websites

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Phishing page on IPFS gateway; high‑risk credential harvest – confirmed scam.

Risk Factors
IPFS hosting of credential‑harvesting form
New/unregistered domain (hash‑based) presenting a login page
Brand impersonation of a webmail service
Absence of legitimate branding or official domain
Domain age information unavailable

Details

Page Title

Webmail Sign-in

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs.dweb.link' uses the .link top-level domain; it also runs on subdomain 'bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs'. The core label 'dweb' covers 4 characters holding one vowel versus 3 consonants. Splitting it apart reveals two words: d, web. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bafkreibupiq2fnvqdhui556opdnhkidbtrdapw46ytd5eis7vqfotuc72y.ipfs.dweb.link/

Page Load Overview

0.24s
Total Load Time
12
HTTP Requests
7
Domains
108 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:241 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4104.16.174.226United States
AS13335CLOUDFLARENET
2209.94.90.3United States
AS40680PROTOCOL
2142.250.186.99United States
AS15169GOOGLE
1172.67.74.152United States
AS13335CLOUDFLARENET
1142.250.185.196United States
AS15169GOOGLE
1142.250.185.202United States
AS15169GOOGLE
0142.250.185.68United States
AS15169GOOGLE
0104.26.12.205United States
AS13335CLOUDFLARENET
0104.16.175.226United States
AS13335CLOUDFLARENET
02602:fea2:2::2United States
AS40680PROTOCOL
1219--

Detected Technologies4

Content Similarity HashesFor malware variant detection

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data