Security Scan Report: python.njbocong.com

Submitted: Oct 26, 2025, 9:39:03 PMCompleted: Oct 26, 2025, 9:39:51 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is python.njbocong.com and was registered NaN years ago.

Submitted URL: https://python.njbocong.com/?token=SlI02BJ5smXqwyVXMB39gzajhAb

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Site appears to be a credential‑harvesting phishing page; treat as high risk.

Risk Factors
Credential harvesting form on an unranked domain
Hidden password field (potentially used to capture credentials silently)
Unranked domain combined with login form increases phishing likelihood
Domain age information unavailable

Details

Page Title

处理中

Scan Type

public

Language

🇨🇳

Chinese

(80% confidence)

Category

real estate property

(85%)

Domain Information

The domain 'python.njbocong.com' uses the commercial generic top-level domain (.com) with subdomain 'python'. Its registrable label 'njbocong' stretches across 8 characters with 2 vowels and six consonants. Word splitting yields 3 words: nj, bo, cong. Expect two characters per word on average. Most frequently, 'bo' shows up in Slovenian. You may catch it in Chinese (Zhuyin) and Albanian as well.

Screenshot

Security scan screenshot of https://python.njbocong.com/?token=SlI02BJ5smXqwyVXMB39gzajhAb

Page Load Overview

16.68s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:80%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:80%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:126 chars
Detector Agreement:100%

Website Classification

Primary Category

real estate property85% confidence
Type: webapp
Method: ml+structural

All Detected Categories

real estate property
85%
healthcare medical
83%
documentation technical
78%
finance banking
74%
government public service
71%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3188.114.96.3United States
AS13335CLOUDFLARENET
0188.114.97.3United States
AS13335CLOUDFLARENET
02a06:98c1:3121::3United States
AS13335CLOUDFLARENET
02a06:98c1:3120::3United States
AS13335CLOUDFLARENET
34--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11702044E5AF30481B817D0B96BF75B0A36548013C40ECD253F9C779CCF9A5959AA2BCD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:xQOu6SLaS9Mr2ukGfgDdI+fQEMpRJKcLN+O0Ci+QCiZP:G76AafrnkGfoI+jMpRJKcYmi+QCil

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8748:QIiCu28MgOQB0QCNEKkbDXLt1GwCYMSsKAEmaCUmAUoASkMnjiBsaoCEBwAQojHJ9ItHGOIRYBCYCebfGADRASIRGyFWMVrE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:030707070f070307
Perceptual Hash:a929ce5cd32e5172
Difference Hash:ffbf9f9b9b1f2fef
Wavelet Hash:0f0f0f0f0f07073f
Color Hash:#2d4386

Scan History

Scan history not available

Unable to load historical scan data