Security Scan Report: 1g017lb.top

Redirected to: https://1g017lb.top/h5/index.html

Submitted: Oct 23, 2025, 7:53:03 AMCompleted: Oct 23, 2025, 7:56:15 AMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 2 countries across 2 domains to perform 70 HTTP transactions. The main domain is 1g017lb.top and was registered NaN years ago.

Submitted URL: https://1g017lb.top/

Effective URL: https://1g017lb.top/h5/index.htmlRedirected

AI Security Verdict

High Risk

Confidence: 95%

10
Risk Score

High‑risk phishing site using URL manipulation; do not trust or interact.

Risk Factors
URL manipulation (phishing technique)
Brand‑new domain (<7 days old)
Unranked/low‑reputation domain
Empty page title and no visible legitimate content
Domain age information unavailable

Details

Page Title

引导页

Scan Type

public

Language

🇨🇳

Chinese

(80% confidence)

Category

blog personal website

(33%)

Domain Information

The domain name '1g017lb.top' uses the .top top-level domain without a subdomain. Count 7 characters in '1g017lb' holding 0 vowels versus three consonants; bonus characters include 4 digits. It segments into four words: 1, g, 017, lb. Median word length comes out to 1.5 characters. 'g' most strongly signals Vietnamese. Secondary signals appear in Danish and English.

Screenshot

Security scan screenshot of https://1g017lb.top/

Page Load Overview

6.46s
Total Load Time
70
HTTP Requests
2
Domains
1 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:80%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:80%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:791 chars
Detector Agreement:100%

Website Classification

Primary Category

blog personal website33% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

blog personal website
33%
healthcare medical
27%
e-commerce shopping
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
69104.21.38.103United States
AS13335CLOUDFLARENET
4172.67.221.251United States
AS13335CLOUDFLARENET
42408:4005:30a:4302:6218:d8d9:db29:5dd8Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
4111.231.169.247Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
4118.25.42.241Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
4124.220.205.65Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
42606:4700:3032::6815:2667United States
AS13335CLOUDFLARENET
42408:4005:30a:4302:6218:d8d9:db29:5dd6Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
4124.222.174.117Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
42408:4005:30a:4302:6218:d8d9:db29:5dd2Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
7016--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D483D631250A396B503398D9F891AF3C707F6737C1065BA4FFAC57699BCA8ED0825B48

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:ledZXEnBtc99AFdIONS1odGsdG2WEW2ZlrmZ5sf/+sf0Lsf6OsfopTzhBeC3D:3NrrpZ9X

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:84322:jwuAxARaAEBgnaicAqAAoZ0BStIwA6hNIJBICwPGIBLEAFIKhglWDAVBIsQyQDAIfBjRF8IPYoYVAIkApAGSRBphMAQSI0J5

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data