Security Scan Report: ipfs.io

Submitted: Dec 10, 2025, 10:34:24 PMCompleted: Dec 10, 2025, 10:34:56 PMpubliccompleted
Loading additional data...

Summary

This website contacted 25 IPs in 2 countries across 8 domains to perform 21 HTTP transactions. The main domain is ipfs.io.

Submitted URL: https://ipfs.io/ipfs/bafkreiglkwlvfqadl56iwmlzsu3hg6evcvn2epsm7rnrcrsq4ywa555xsm?filename=c01Pweb.html&ecopt=1637_60_20251211073325BMXsD7#[email protected]

The Cisco Umbrella rank of the primary domain is #104,019 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 93%

9
Risk Score

High risk phishing page impersonating CashNinja login hosted on IPFS.

Risk Factors
IPFS-hosted content collecting credentials
Email address in URL fragment used as phishing lure
Brand impersonation of CashNinja on an untrusted domain
Low ranking domain for a claimed brand
Google Safe Browsing phishing detection
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Language

🇪🇸

Spanish

(43% confidence)

Category

social_media

(50%)

Domain Information

The domain 'ipfs.io' uses the British Indian Ocean Territory country-code top-level domain (.io) while skipping any subdomain. The second-level label 'ipfs' is 4 characters long containing one vowel alongside 3 consonants. Splitting it apart reveals 2 words: i, pfs. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ipfs.io/ipfs/bafkreiglkwlvfqadl56iwmlzsu3hg6evcvn2epsm7rnrcrsq4ywa555xsm?filename=c01Pweb.html&ecopt=1637_60_20251211073325BMXsD7#sahana@cashninja.com

Page Load Overview

19.99s
Total Load Time
21
HTTP Requests
8
Domains
166 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:43%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:43%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,245 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as es

Website Classification

Primary Category

social_media50% confidence
Type: webapp
Method: structural

All Detected Categories

social_media
50%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
21142.250.74.202United States
AS15169GOOGLE
0104.17.24.14United States
AS13335CLOUDFLARENET
0104.18.1.22United States
AS13335CLOUDFLARENET
0104.18.11.207United States
AS13335CLOUDFLARENET
0162.241.27.10United States
AS46606UNIFIEDLAYER-AS-1
0104.18.10.207United States
AS13335CLOUDFLARENET
0209.94.90.1United States
AS40680PROTOCOL
0151.101.194.137San Francisco, California, United States
AS54113FASTLY
0104.18.0.22United States
AS13335CLOUDFLARENET
0151.101.66.137San Francisco, California, United States
AS54113FASTLY
2125--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A3D2E7135889108B91134ED9BED80A2D2A69C35399470EC9B17E6699CFC3FDDE8D730B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:4dLUuuRzdNU/+iUWD/ZmXg8cOM+l6NEvRFznKraH/YPnD:sUvdNU/V/TZmXg8UNEvRxKraH/YPD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:30765:EAgQVycIQAY48oIIOgWFkMTSYcEhIIREnAoAjAp8qAjT6MACfCEDjoGkIgyAqIU0oECHABIswCAUJK4qEIAEoKQNDVAKCoEh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7ffffffff
Perceptual Hash:b33399cc64666699
Difference Hash:0c0c0c0e14080000
Wavelet Hash:27272703c4e4f0f0
Color Hash:#9d53ac

Other Hashes

Crop Resistant:0c0c0c0e14080000

Scan History

Scan history not available

Unable to load historical scan data