Security Scan Report: jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165.nip.io

Submitted: Mar 29, 2026, 9:18:38 PMCompleted: Mar 29, 2026, 9:20:16 PMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 1 country across 6 domains to perform 1 HTTP transaction. The main domain is jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165.nip.io and was registered NaN years ago.

Submitted URL: https://jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165.nip.io/c.html

The Cisco Umbrella rank of the primary domain is #376,334 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Site appears to impersonate the IXL brand on a low‑ranked domain; likely phishing.

Risk Factors
Brand impersonation (IXL) on a low‑ranked, unrelated domain
Low Cisco Umbrella ranking for a site claiming a known brand
Domain age information unavailable

Details

Page Title

Education IXL

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(48%)

Domain Information

Within the British Indian Ocean Territory country-code top-level domain (.io), 'jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165.nip.io' is registered; it also runs on subdomain 'jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165'. The registrable portion 'nip' spans 3 characters containing 1 vowel alongside 2 consonants. Word splitting yields 1 word: nip. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://jgsqhzyxupdate.poupdate.gjidcbadcbadcbaupdate.987update.update.432beta.wwwas.51-81-35-165.nip.io/c.html

Page Load Overview

2.64s
Total Load Time
19
HTTP Requests
7
Domains
343 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:343 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network48% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
48%
education learning
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4142.251.20.97United States
351.81.35.165United States
AS16276OVH SAS
3142.251.127.94United States
3104.18.0.22United States
AS13335Cloudflare, Inc.
3172.217.16.202United StatesUnknown
3151.101.1.229United StatesUnknown
196--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14C13E936F111223E9497B6BA39EBF30CB3756101B2406560B8AD40B443DDEA556BEFDC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Npi90TpJyWC4rh/8If+MhPZr10zz/QzYqkt8eZs2Ao4hQy7LDMcDreHFNWQM:Ng90TfyW9Hf+MhPZr1Wz4zYqkt8eZshD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:44002:BNoQfgMEA6CCzYZA0hoAxEwQCSAsmMoKjkLuHGgN8WgAADwhBo0AVAMyDwSAY0cDJgFcQkM1jAigKX4GSAZEDZtJg4AhAKiY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:988000081c00003e
Perceptual Hash:997dfe7999290409
Difference Hash:30088498908480b4
Wavelet Hash:98ff007f1c7b003e
Color Hash:#4042bf

Other Hashes

Crop Resistant:30088498908480b4

Scan History

Scan history not available

Unable to load historical scan data