Security Scan Report: ipfs.io

Submitted: Dec 10, 2025, 8:23:03 AMCompleted: Dec 10, 2025, 8:25:38 AMpubliccompleted
Loading additional data...

Summary

This website contacted 23 IPs in 2 countries across 4 domains to perform 5 HTTP transactions. The main domain is ipfs.io.

Submitted URL: https://ipfs.io/ipfs/bafkreifbajvdoef6oeg45b7v6pnfisntuh3lolhvvm25dtbau2nzdowfby

The Cisco Umbrella rank of the primary domain is #104,019 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page on IPFS gateway impersonating Norton – high risk

Risk Factors
Social engineering threat detected by Google Safe Browsing
Login prompt on IPFS‑hosted page (high‑risk hosting)
Brand impersonation of a well‑known security company (Norton) on an untrusted domain
Absence of any legitimate content or privacy assurances
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(51% confidence)

Category

news media journalism

(40%)

Domain Information

Within the British Indian Ocean Territory country-code top-level domain (.io), 'ipfs.io' is registered with no subdomain. Its registrable label 'ipfs' stretches across 4 characters split between one vowel and three consonants. It segments into 2 words: i, pfs. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ipfs.io/ipfs/bafkreifbajvdoef6oeg45b7v6pnfisntuh3lolhvvm25dtbau2nzdowfby

Page Load Overview

1.80s
Total Load Time
5
HTTP Requests
4
Domains
87 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:51%
Script Type:Latin
Text Length:199 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism40% confidence
Type: static
Method: ml+structural

All Detected Categories

news media journalism
40%
government public service
36%
adult content
35%
healthcare medical
35%
documentation technical
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
0209.94.90.1United States
AS40680PROTOCOL
0192.3.141.254Buffalo, New York, United States
AS36352AS-COLOCROSSING
0142.250.184.234United States
AS15169GOOGLE
0142.250.184.202United States
AS15169GOOGLE
0216.58.206.42United States
AS15169GOOGLE
02602:fea2:2::1United States
AS40680PROTOCOL
0142.250.185.234United States
AS15169GOOGLE
0142.250.185.170United States
AS15169GOOGLE
0142.250.185.74United States
AS15169GOOGLE
0142.250.186.138United States
AS15169GOOGLE
523--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15533447EB6C122A361010DD8BEEB450D7EB85101D71C1A247A8D672987A4FBDCEC1F9E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:caDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDQjaDe:cPPPPPPPPPPPPPPPPPPPPXzJBnhTz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:53125:ISYKABHJQU1LCCHwaWHGAchRCEDgJ1E4EEAMUyHAIQTGQHGBSCYTEBJbBJxiOokiAEDQMjEAg0ZMtgAim4OqhhAC6NFyDQcR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc3c7e7e7e7ffff
Perceptual Hash:f7338ccc8a8b8999
Difference Hash:000e0e0a0e0c0000
Wavelet Hash:fac2c0c0c0c0fefe
Color Hash:#79d2aa

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data