Security Scan Report: 6zzhphlwmy.cfd

Redirected to: https://www.baidu.com/

Site favicon
Submitted: Nov 10, 2025, 3:46:35 PMCompleted: Nov 10, 2025, 3:47:47 PMpubliccompleted
Loading additional data...

Summary

This website contacted 51 IPs in 0 countries across 15 domains to perform 130 HTTP transactions. The main domain is baidu.com and was registered NaN years ago.

Submitted URL: https://6zzhphlwmy.cfd/

Effective URL: https://www.baidu.com/Redirected

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Phishing site impersonating Baidu using a brand‑new, unranked domain

Risk Factors
Brand impersonation on a newly registered, unranked domain
Critical domain age (<7 days) combined with brand spoofing
Suspicious redirect from unknown domain to Baidu without legitimate redirect service
Domain age information unavailable

Details

Page Title

百度一下,你就知道

Scan Type

public

Language

🇺🇸

English

(33% confidence)

Category

social media network

(33%)

Domain Information

Within the .cfd top-level domain, '6zzhphlwmy.cfd' is registered while skipping any subdomain. Count 10 characters in '6zzhphlwmy' with 0 vowels and nine consonants, notching 1 digit. Word splitting yields 6 words: 6, zz, h, ph, lw, my. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://6zzhphlwmy.cfd/

Page Load Overview

2.82s
Total Load Time
130
HTTP Requests
15
Domains
2.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:33%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:33%
Script Type:Latin
Text Length:254,818 chars
Detector Agreement:67%

Website Classification

Primary Category

social media network33% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
33%
documentation technical
32%
technology software
31%
news media journalism
30%
adult content
29%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
30103.235.47.212UnknownUnknown
2111.170.165.38UnknownUnknown
28.210.106.179UnknownUnknown
242.101.56.38UnknownUnknown
2117.33.185.38UnknownUnknown
2128.1.34.165UnknownUnknown
2183.60.227.38UnknownUnknown
2114.232.92.38UnknownUnknown
2218.94.231.38UnknownUnknown
2106.56.217.38UnknownUnknown
13051--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F6E41961D7A52039B027C2BD7898764831758123CA538BBDFAEDB96C87C559223F3B1C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:OGK0gCzhDXDwiDTyTNv7FRbOTnTTTXTj8vr+Pq8/BTwu:e0fQiDTyTNv7FRbOTnTTTXTj8vr+Pq8b

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:658183:ApFwlEOwH4RiBI8gW4L1gFkEOEsgohRBAAdAIhNA2IgNsMDwCAggKEABAArIcTaIrIFGzCsb9gEi4yCHQDcI0RAcRXAExACz

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7fbffffffc3c1
Perceptual Hash:e9966996198ccb6c
Difference Hash:c00e1206260892b2
Wavelet Hash:3ec3c3c3d7d78180
Color Hash:#5384ac

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data