Security Scan Report: bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs.dweb.link

Submitted: Dec 10, 2025, 5:19:56 AMCompleted: Dec 10, 2025, 5:20:25 AMpubliccompleted
Loading additional data...

Summary

This website contacted 31 IPs in 3 countries across 10 domains to perform 21 HTTP transactions. The main domain is bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs.dweb.link.

Submitted URL: https://bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs.dweb.link/

The Cisco Umbrella rank of the primary domain is #174,969 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Likely phishing site; do not trust.

Risk Factors
IPFS-hosted page with credential collection
New/unregistered domain
Potential brand impersonation (orobe.it) on a non‑official domain
Low reputation ranking
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

technology software

(65%)

Domain Information

The domain name 'bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs.dweb.link' uses the .link top-level domain and includes subdomain 'bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs'. Count 4 characters in 'dweb' with one vowel and 3 consonants. It segments into two words: d, web. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bafkreicfwvu6im6mjwgvoberdluk4jc7vhwtldq5r3w4mmfltqek7gnziu.ipfs.dweb.link/

Page Load Overview

3.38s
Total Load Time
21
HTTP Requests
10
Domains
106 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
Text Length:593 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software65% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
65%
news media journalism
29%
government public service
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
0142.251.38.74United States
AS15169GOOGLE
0216.58.209.195United States
AS15169GOOGLE
0151.101.194.137San Francisco, California, United States
AS54113FASTLY
08.6.112.0United States
AS13335CLOUDFLARENET
0209.94.90.3United States
AS40680PROTOCOL
062.149.158.90Arezzo, Tuscany, Italy
AS31034Aruba S.p.A.
08.47.69.0United States
AS13335CLOUDFLARENET
0209.94.90.2United States
AS40680PROTOCOL
0216.58.209.170United States
AS15169GOOGLE
0151.101.65.229San Francisco, California, United States
AS54113FASTLY
2131--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F7428311945C4EF6511303DA31BBA709728BDE7BDA52C894B2BF46842FEBD81EC1712B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:lNRQS+NtdlGUheOkcSwultOKJf+1dcyfwnz9ltO+sxMgrhQpi41CUYGRSqqsq6zU:lNRQSstdlGUheOkcSwultOKJf+1dcyfl

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:12251:NugEQtWLHCGzJgiQGEgNZBCKgED2BahKEg6opBAARpgCBASSFUQgEQGgdVYAiyUFQUAQBAIABGVQKYEKBylB5kkAJAgwU0g4

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f3f3f3fff1f1ffe7
Perceptual Hash:ed84926d62926d6d
Difference Hash:050602000303000e
Wavelet Hash:01010101f1f1ff00
Color Hash:#1f934e

Other Hashes

Crop Resistant:050602000303000e

Scan History

Scan history not available

Unable to load historical scan data