Security Scan Report: phjewelnet.com

Redirected to: https://jili20.xyz/?host=https://wjknw6.com?ch=64281

Site favicon
Submitted: Dec 16, 2025, 2:25:01 AMCompleted: Dec 16, 2025, 2:25:32 AMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 2 domains to perform 27 HTTP transactions. The main domain is jili20.xyz and was registered NaN years ago.

Submitted URL: https://phjewelnet.com/nwy0n.html

Effective URL: https://jili20.xyz/?host=https://wjknw6.com?ch=64281Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam impersonating Telegram on a newly registered unranked domain.

Risk Factors
Brand impersonation of Telegram on a newly registered domain
Very new domain (<30 days) with no reputation
Unranked domain used for brand spoofing
Redirect chain to unrelated, suspicious domain
Domain age information unavailable

Details

Page Title

jili20 - The Philippines' No.1 gaming platform

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

gambling betting

(55%)

Domain Information

Domain 'phjewelnet.com' uses the commercial generic top-level domain (.com). The core label 'phjewelnet' covers 10 characters split between three vowels and seven consonants. Segmentation suggests three words: ph, jewel, net. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phjewelnet.com/nwy0n.html

Page Load Overview

3.76s
Total Load Time
27
HTTP Requests
2
Domains
469 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,015 chars
Detector Agreement:100%

Website Classification

Primary Category

gambling betting55% confidence
Type: static
Method: ml+structural

All Detected Categories

gambling betting
55%
entertainment media
27%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6104.21.35.205United States
AS13335CLOUDFLARENET
3172.67.218.136United States
AS13335CLOUDFLARENET
3104.21.94.24United States
AS13335CLOUDFLARENET
3172.67.179.144United States
AS13335CLOUDFLARENET
32606:4700:3032::6815:5e18United States
AS13335CLOUDFLARENET
32606:4700:3030::ac43:da88United States
AS13335CLOUDFLARENET
32606:4700:3030::6815:23cdUnited States
AS13335CLOUDFLARENET
32606:4700:3036::ac43:b390United States
AS13335CLOUDFLARENET
278--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F6626332D29A62BB1213829026377F59F19B446BDF1A44D1B5EE07E44FE6EC2CCB3158

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:LTsvzk/yKbALLnhefq0bTEx47LKZdGFnP548+sS:LTKThefq0box47WZdinh4V3

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:15128:WQchIwANGCwCAIHMECIBgoFCBwgyYJCCBMjEFGhiYBqxAAkrc+0IDB81GGI8A4G90KvGFQC6mHAOAEdAAzCIBAAAuAFEAg0B

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff01091919090101
Perceptual Hash:88d966cccc99a6ce
Difference Hash:1519193331110d15
Wavelet Hash:ffc3c9d919191901
Color Hash:#78473a

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data