Security Scan Report: hua456t.xyz

Submitted: Apr 3, 2026, 8:51:16 PMCompleted: Apr 3, 2026, 8:52:37 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 3 domains to perform 17 HTTP transactions. The main domain is hua456t.xyz and was registered NaN years ago.

Submitted URL: https://hua456t.xyz/

AI Security Verdict

Confirmed Scam

Confidence: 88%

9
Risk Score

Impersonates Telegram login page on a brand‑new unranked domain; likely phishing via QR code.

Risk Factors
Brand impersonation (Telegram branding on unrelated domain)
Newly registered domain (< 7 days) with critical risk multiplier
Unranked domain with low reputation
QR‑code login page used for credential hijacking
Domain age information unavailable

Details

Page Title

Secure Messenger

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

You're looking at domain 'hua456t.xyz' on the open generic top-level domain (.xyz) without a subdomain. The core label 'hua456t' covers 7 characters with two vowels and two consonants, along with 3 digits. Segmentation suggests three words: hua, 456, t. The median word length lands at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://hua456t.xyz/

Page Load Overview

1.25s
Total Load Time
26
HTTP Requests
3
Domains
301 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:235 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13149.154.167.99Amsterdam, North Holland, Netherlands
AS62041Telegram Messenger Inc
1364.29.17.67Netherlands
262--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T185F12E62F764E83A2357027C35D1F10E47E2A447D381AA50B9F972E50F8FDAB80E7225

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ujtSoUZZUG70t43OQYaLiK5qc75ZhE58t:KtSGsB3OQ9LiK5RHB

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7717:HAWCKREMBgFQPSkgMEWLEJLD2iWxfCCAEDUw4CogJABBsjAoBWGUAYGgYOBFQBkjGECIB4BUMHkKhBEiGAwGgCCSSGiqFiEF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b333cc8c3333cccc
Difference Hash:0008080c0c000000
Wavelet Hash:3f27272720303030
Color Hash:#e0ce6c

Other Hashes

Crop Resistant:0008080c0c000000

Scan History

Scan history not available

Unable to load historical scan data