Security Scan Report: qimojihe.wixsite.com

Submitted: Oct 21, 2025, 9:12:04 PMCompleted: Oct 21, 2025, 9:14:00 PMpubliccompleted
Loading additional data...

Summary

This website contacted 32 IPs in 1 country across 8 domains to perform 112 HTTP transactions. The main domain is qimojihe.wixsite.com.

Submitted URL: https://qimojihe.wixsite.com/my-site-2

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Phishing site impersonating Xfinity with credential‑stealing form; confirmed scam.

Risk Factors
Brand impersonation (Xfinity) on an unusual domain
Credential harvesting form collecting email and password
Malicious Indicators of Compromise (wix.com, wixsite.com) linked from the site
UNRANKED domain (not in Cisco Umbrella top 1M)
New or unknown domain age
Domain age information unavailable

Details

Page Title

Xfinity | My Site 2

Scan Type

public

Language

🇺🇸

English

(55% confidence)

Category

corporate

(50%)

Domain Information

The domain name 'qimojihe.wixsite.com' uses the commercial generic top-level domain (.com), featuring subdomain 'qimojihe'. The second-level label 'wixsite' is 7 characters long with 3 vowels and four consonants. Tokenizing the label suggests three words: wi, x, site. Expect two characters per word on average. Most frequently, 'wi' shows up in Chinese (Zhuyin). You may catch it in Chinese (Pinyin) and English as well. Net impression: Chinese (Zhuyin) phrase.

Screenshot

Security scan screenshot of https://qimojihe.wixsite.com/my-site-2

Page Load Overview

94.80s
Total Load Time
112
HTTP Requests
8
Domains
839 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:55%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:55%
Script Type:Latin
HTML Lang Attribute:en
Text Length:156 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: spa
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
19107.23.138.31Ashburn, Virginia, United States
AS14618AMAZON-AES
318.209.154.115Ashburn, Virginia, United States
AS14618AMAZON-AES
3151.101.2.217San Francisco, California, United States
AS54113FASTLY
398.90.150.80Ashburn, Virginia, United States
AS14618AMAZON-AES
354.145.144.254Ashburn, Virginia, United States
AS14618AMAZON-AES
334.149.206.255Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
3151.101.130.217San Francisco, California, United States
AS54113FASTLY
352.1.167.16Ashburn, Virginia, United States
AS14618AMAZON-AES
334.144.206.118Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
334.49.229.81Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
11232--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19E64AFA06602F0394E6311DF538A770CA53D5011FC918A24F6FD96A029DBEEA13E377E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ha11NC8FFrDdiMDZMEfuZuHudgjwD9G6UY30TeW6UzhE9g/h/T3J36qL7AMlFW6T:ha1V9iMDZMEfQ0TbzgEx6cE8FV

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:331143:IAC6zkAyyOFaFQCQOAiQEFBTKnpYhBAv8AQYIUjgNQAFGwAFMwuEIU+E4AcZ4NYiKCi5IjWYHEEA5JyAJJDBvSoBAMEUBCC2

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c3d3d3d3ffffffff
Perceptual Hash:e4669b9b1938199b
Difference Hash:0424a52606200000
Wavelet Hash:00c20202c2fefefe
Color Hash:#403a78

Other Hashes

Crop Resistant:0424a52606200000

Scan History

Scan history not available

Unable to load historical scan data