Security Scan Report: www.moic.gov.np

Redirected to:
https://www.moic.gov.np/
Site favicon
Submitted: May 28, 2026, 12:42:20 AMCompleted: May 28, 2026, 12:44:21 AMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 9 domains to perform 2 HTTP transactions. The main domain is moic.gov.np.

Submitted URL: http://www.moic.gov.np

Effective URL: https://www.moic.gov.np/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Multiple high‑severity keylogger detections on an unranked, newly registered site indicate a confirmed malware distribution scam.

Risk Factors
Unranked / low‑reputation domain
Unknown domain age (potentially brand new)
Multiple high‑severity keylogger YARA detections
Right‑click blocking
Dynamic code generation via Function constructor
Domain age information unavailable

Details

Page Title

Ministry of Communication and Information Technology

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government

(48%)

Domain Information

The domain 'www.moic.gov.np' uses the Nepalese country-code top-level domain (.gov.np) with subdomain 'www'. The core label 'moic' covers 4 characters split between 2 vowels and 2 consonants. Breaking it apart gives two words: moi, c. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.moic.gov.np

Page Load Overview

25.06s
Total Load Time
169
HTTP Requests
17
Domains
43.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:20,562 chars
Detector Agreement:60%

Website Classification

Primary Category

government48% confidence
Type: spa
Method: ml+structural

All Detected Categories

government
48%
government public service
35%
news media journalism
25%
news/blog
20%

Detected Features

Search
OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
25104.17.24.14United States
AS13335Cloudflare, Inc.
18157.240.0.6Frankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
18142.251.13.100United States
AS15169Google LLC
18142.250.154.97United States
AS15169Google LLC
18103.69.124.8Nepal
AS131341Department of Information Technology, Government of Nepal
18104.18.1.22United States
AS13335Cloudflare, Inc.
18103.69.124.99Nepal
AS131341Department of Information Technology, Government of Nepal
1813.226.244.119United States
AS16509Amazon.com, Inc.
18104.26.5.65United States
AS13335Cloudflare, Inc.
1699--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F7A4D819E3F07126019BB29177692E3DDEA4E133CA0A0845B5EC47D59FD3EB0985F38A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:1aMe7U1iombBW39vjfnL7gkkEWTfqpUgWOgB1R:1aMeZWtvjfL7gkkEWTfqpUgWp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:450268:ZgMwXdgAihi6rBnAJSYUCLRmBgAooQA4EAZB6EIHACwLSCgok1ahj6ACAAhioNSqAAEkCECYCckGQMqwAaQzVVsXEElUKhB4

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffff0820003cff
Perceptual Hash:d328ac46731f6e16
Difference Hash:2932514949557008
Wavelet Hash:00ffff8c20003cff
Color Hash:#43783a

Scan History

Scan history not available

Unable to load historical scan data