Security Scan Report: next-ai-draw-io-29o4q4zsjz.edgeone.dev

Site favicon
Submitted: May 9, 2026, 9:56:58 AMCompleted: May 9, 2026, 9:58:15 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 27 HTTP transactions. The main domain is next-ai-draw-io-29o4q4zsjz.edgeone.dev and was registered NaN years ago.

Submitted URL: https://next-ai-draw-io-29o4q4zsjz.edgeone.dev/zh.html

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

The site is a newly created subdomain on edgeone.dev with a critical IDS alert for a potential C2 beacon and heavily obfuscated JavaScript, leading to a high risk classification.

Risk Factors
Critical IDS alert indicating malware C2 activity
Unknown subdomain age on a hosting platform
Highly obfuscated JavaScript with suspicious encoding patterns
Unranked domain reputation
Presence of a form on an unknown‑age subdomain
Domain age information unavailable

Details

Page Title

Next AI Draw.io - AI powered diagram generator

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

technology software

(51%)

Domain Information

You're looking at domain 'next-ai-draw-io-29o4q4zsjz.edgeone.dev' on the developer-focused generic top-level domain (.dev) and includes subdomain 'next-ai-draw-io-29o4q4zsjz'. The registrable portion 'edgeone' spans 7 characters holding four vowels versus 3 consonants. Tokenizing the label suggests two words: edge, one. Average segment length settles at 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://next-ai-draw-io-29o4q4zsjz.edgeone.dev/zh.html

Page Load Overview

2.33s
Total Load Time
50
HTTP Requests
2
Domains
642 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh
Text Length:375 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software51% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
51%
documentation technical
31%
entertainment media
28%
corporate
25%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
25104.18.4.247United States
AS13335Cloudflare, Inc.
2543.174.247.29Singapore
502--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T111732B65B408DD3CDA1B4E8CE6BCBE3C8019E281DB21806CB29DC56555C3FF57AB2AC4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:L0P060X/febx/c64Jysq7vy1p+xgPxMRxHzH8gDPd6CahaRp9hq0cd0H0U:1feOp+xCxMRxHzHpaaRp9h8A

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:75039:KAbQPAAGZI2RjwgsAQKIgEHAAlmupvw0oEWmfgIpwYKwWWxAAQbICBACRhCgN8QABbFqQWCgSlkM4GgkD5gRIx8QGAIGBcuS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3377757173737352
Perceptual Hash:84a23dad5d4a1adb
Difference Hash:e6c5e5e5e6c7c7c6
Wavelet Hash:0377757571737300
Color Hash:#6240bf

Other Hashes

Crop Resistant:e6c5e5e5e6c7c7c6

Scan History

Scan history not available

Unable to load historical scan data