Security Scan Report: oauth-whatapp.hl.cn

Redirected to:
https://hk.yahoo.com/?guccounter=1
Site favicon
Submitted: Jul 9, 2026, 8:51:10 PMCompleted: Jul 9, 2026, 8:52:12 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 3 countries across 6 domains to perform 21 HTTP transactions. The main domain is hk.yahoo.com and was registered NaN years ago.

Submitted URL: http://oauth-whatapp.hl.cn/

Effective URL: https://hk.yahoo.com/?guccounter=1Redirected

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

The site mimics Yahoo in meta tags but lacks credential collection; low risk overall.

Risk Factors
Brand impersonation on a mismatched, unranked domain
Unranked domain reputation
Safety Factors
Very old domain (registered 1995)
No malicious forms or credential collection
No IoC or YARA malware detections
Only informational IDS alerts
Domain age information unavailable

Details

Page Title

Yahoo

Scan Type

public

Language

🇰🇷

Korean

(58% confidence)

Category

gambling betting

(78%)

Domain Information

You're looking at domain 'oauth-whatapp.hl.cn' on the Chinese country-code top-level domain (.hl.cn) and has no subdomain. Its registrable label 'oauth-whatapp' stretches across 13 characters holding 5 vowels versus 7 consonants, along with 1 hyphen. Tokenizing the label suggests 3 words: oauth, what, app. The median word length lands at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://oauth-whatapp.hl.cn/

Page Load Overview

2.69s
Total Load Time
21
HTTP Requests
6
Domains
165 KB
Total Size

Language Analysis

Primary Language

🇰🇷Korean
Code: ko
Confidence:58%
Script:Hangul
Direction:ltr

Detection Details

Language Code:ko
Detection Confidence:58%
Script Type:Hangul
HTML Lang Attribute:zh-Hant-HK
Text Length:28,114 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as ko

Website Classification

Primary Category

gambling betting78% confidence
Type: static
Method: ml+structural

All Detected Categories

gambling betting
78%
corporate business
76%
finance banking
71%
adult content
69%
real estate property
69%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
787.248.119.251United Kingdom
AS203220Yahoo-UK Limited
252.215.44.38Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
2104.208.68.88Azure · CLOUDHong Kong, Hong Kong
AS8075Microsoft Corporation
254.77.189.28Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
254.155.102.130Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
2188.125.72.139Dublin, Leinster, Ireland
AS34010Yahoo-UK Limited
287.248.119.252United Kingdom
AS203220Yahoo-UK Limited
234.254.93.9Aws · CLOUDDublin, Leinster, Ireland
AS16509Amazon.com, Inc.
218--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14C943AB5A3135A3F110389F8B6A1372E91DAE72FCD53458CD3EC93242BDACE15AD1168

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:XCJ9b4bL8zfvKLUUlOjdtez4CuFlYwH2BQh4ku8Zl3Db77FXlkr4bfcGe:0mjI5Jetkll3P7Hu4f4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:420623:CbAAgbI3aSEDAAUpwCbqCQUhABCAOR8yBqYcICDKBQSBYRglvguIGTKIHClkGS/EBCDkAEgBUBtgAEohw/ICZoACEcjN1BIJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfcfcfffbf9999
Perceptual Hash:b9b04fc6c668b169
Difference Hash:6d9a9ab9a47b2b3b
Wavelet Hash:f7474f475d191818
Color Hash:#d46ce0

Scan History

Scan history not available

Unable to load historical scan data