Security Scan Report: onlineplus-credit.com

Redirected to: https://onlineplus-credit.com/index.php?m=User&a=login

Submitted: Dec 10, 2025, 11:41:49 AMCompleted: Dec 10, 2025, 11:42:33 AMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 3 countries across 4 domains to perform 20 HTTP transactions. The main domain is onlineplus-credit.com.

Submitted URL: https://onlineplus-credit.com/index.php?m=Index&a=money

Effective URL: https://onlineplus-credit.com/index.php?m=User&a=loginRedirected

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Phishing login page harvesting credentials; do not use.

Risk Factors
Password field without accompanying username/email field
Hidden password input field
Credential harvesting form on an unranked, likely new domain
Domain age information unavailable

Details

Page Title

LOGIN

Scan Type

public

Language

🇹🇭

TH

(60% confidence)

Category

unknown

(0%)

Domain Information

Within the commercial generic top-level domain (.com), 'onlineplus-credit.com' is registered with no subdomain. Its registrable label 'onlineplus-credit' stretches across 17 characters holding 6 vowels versus 10 consonants; bonus characters include one hyphen. It segments into 3 words: online, plus, credit. Median word length is 6 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://onlineplus-credit.com/index.php?m=Index&a=money

Page Load Overview

12.38s
Total Load Time
20
HTTP Requests
4
Domains
2.4 MB
Total Size

Language Analysis

Primary Language

🇹🇭Thai
Code: th
Confidence:60%
Script:Unknown
Direction:ltr

Detection Details

Language Code:th
Detection Confidence:60%
Script Type:Unknown
HTML Lang Attribute:en
Text Length:28 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as th

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9188.114.96.3United States
AS13335CLOUDFLARENET
1172.67.221.209United States
AS13335CLOUDFLARENET
1142.250.185.138United States
AS15169GOOGLE
1104.21.70.78United States
AS13335CLOUDFLARENET
1142.250.185.131United States
AS15169GOOGLE
12a00:1450:400a:1009::5fZurich, Zurich, Switzerland
AS15169GOOGLE
12606:4700:3036::6815:464eUnited States
AS13335CLOUDFLARENET
1188.114.97.3United States
AS13335CLOUDFLARENET
12a00:1450:4001:80f::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
12606:4700:3035::ac43:ddd1United States
AS13335CLOUDFLARENET
2012--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19482B751D78E491B302621B025353B88613E8533CB0A8CE9BEBC2564FFDAF5C86379D5

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:OoAehVAOdq5DgG+pup3UAnB5gQG+30cHee7/Urx:DLG5DgGCU3U+B5gLIeuUrx

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17670:AglAiRQAmu8SRoweOrCG9HGkEAsJ5RSJBIBJdMIAMgCUqA8ECEJViCABAwgAEolAmAFAQQtCgAASgJogETTP5QYQPXdgCSli

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7c7e7e7ffe7e7
Perceptual Hash:e66686ce66269933
Difference Hash:4c4c4c4c4c0c0c0c
Wavelet Hash:c2c2c2c2e6e6e6e6
Color Hash:#2d8684

Scan History

Scan history not available

Unable to load historical scan data