Security Scan Report: bafybeia3m7nb22watkfrdim7bmek3er2dfwgic5hqru2rbvdikkuliijpy.ipfs.inbrowser.link

Site favicon
Submitted: Oct 6, 2026, 11:50:07 AMCompleted: Oct 6, 2026, 11:50:42 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Fake myGov sign-in on an IPFS gateway. It impersonates the Australian Government's myGov, collects email, password, SMS code, security questions and licence details, and JavaScript forwards the credentials to an external server.

Risk Factors (5)
Impersonation of a different entity's brand (myGov / Australian Government) on a non-official domain
Credential-harvesting form: password, email, SMS one-time code, security questions, driver's licence and date of birth
JavaScript exfiltration of the entered email and password to an external server
Phishing page hosted on decentralised IPFS storage with no accountable operator
External IP-lookup calls used to fingerprint and log victims
Domain age information unavailable

Details

Page Title

Sign in with myGov - myGov

Scan Type

public

Domain Name Analysis

Within the .link top-level domain, 'bafybeia3m7nb22watkfrdim7bmek3er2dfwgic5hqru2rbvdikkuliijpy.ipfs.inbrowser.link' is registered with subdomain 'bafybeia3m7nb22watkfrdim7bmek3er2dfwgic5hqru2rbvdikkuliijpy.ipfs'. The second-level label 'inbrowser' is 9 characters long split between 3 vowels and 6 consonants. Word splitting yields 2 words: in, browser. Expect 4.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bafybeia3m7nb22watkfrdim7bmek3er2dfwgic5hqru2rbvdikkuliijpy.ipfs.inbrowser.link

Page Load Overview

0.26s
Total Load Time
226 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:3,648 chars
Detector Agreement:75%

Website Classification

Primary Category

adult content88% confidence
Type: webapp
Method: ml+structural

All Detected Categories

adult content
88%
education learning
71%
entertainment media
57%
government public service
52%
documentation technical
41%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12209.94.90.3United States
AS40680Protocol Labs
2151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
2198.59.144.172United States
AS17378TierPoint, LLC
2142.251.20.95Google · CDNUnited States
AS15169Google LLC
2104.18.10.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2172.67.69.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2209.94.90.2United States
AS40680Protocol Labs
2151.101.65.155Fastly · CDNUnited States
AS54113Fastly, Inc.
3412--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E97417324A50342956574A3AFAD2660C3F2DD2A3F6428BA9F8AC1594CFDFB40372735D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:ge0TNB/lBqfUz/LRjqKySpfppN0jP0fsUmu9:ge0TN3BqfUz/LRjfpHCOsUmu9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:362337:FVAUBInqSRNIKemHiTog0CA2YWlAEjQMwRIFIoELIkE1kQcAC2ABUQPGTOAFCIIKCnQpSjDBKSigIBxS1dAE0EKADx8XQKBB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000ffefffffe7ff
Perceptual Hash:b31c0e0c1e33d9f3
Difference Hash:2120184c1c140c0c
Wavelet Hash:0000eec6e6c7e7e7
Color Hash:#2dd298

Other Hashes

Crop Resistant:2120184c1c140c0c

Scan History

Scan history not available

Unable to load historical scan data