Security Scan Report: gnvrog.cfd

Redirected to: https://gnvrog.cfd/index.html

Submitted: Mar 14, 2026, 10:26:49 AMCompleted: Mar 14, 2026, 10:28:17 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 3 domains to perform 1 HTTP transaction. The main domain is gnvrog.cfd and was registered NaN years ago.

Submitted URL: http://gnvrog.cfd/

Effective URL: https://gnvrog.cfd/index.htmlRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Phishing page impersonating Telegram on a brand‑new unranked domain; do not use and report.

Risk Factors
Brand impersonation (Telegram) on an unranked, brand‑new domain
Google Safe Browsing social engineering detection
Domain age < 7 days (critical risk)
Mismatched domain vs. claimed brand in meta tags
Phishing QR‑code login page without legitimate authentication
Domain age information unavailable

Details

Page Title

Telegram

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(39%)

Domain Information

You're looking at domain 'gnvrog.cfd' on the .cfd top-level domain without a subdomain. Its registrable label 'gnvrog' stretches across 6 characters with one vowel and 5 consonants. Breaking it apart gives 3 words: gn, v, rog. Median word length is 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://gnvrog.cfd/

Page Load Overview

0.64s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:244 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network39% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
39%
corporate
25%
phishing/scam
20%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2172.67.198.254United States
AS13335Cloudflare, Inc.
1149.154.167.99United States
32--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T122F15F62F764E83A2357067C34D1F10E47E2E447D781AA40B9E972E50F8FDA780EB625

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ujtSoUZZUG70t13OQYEqWp5qcR5ZhE58b:KtSGsk3OQFqWp5HHv

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8035:OByS4xUcDDIJFLsgEEWDIIoS2iQxLKQQkBkygAhgLASJsqJABBORBYRA4HAMABETPEToDoDUoCooBAEzMBymECj2SCiKRmEU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b323cccc3333cccc
Difference Hash:00000c0c08000000
Wavelet Hash:1f072727243c3030
Color Hash:#6ce0e0

Other Hashes

Crop Resistant:00000c0c08000000

Scan History

Scan history not available

Unable to load historical scan data