Security Scan Report: zhongwen.love

Redirected to: https://zhongwen.love/

Submitted: Dec 20, 2025, 6:25:46 AMCompleted: Dec 20, 2025, 6:26:33 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 3 countries across 4 domains to perform 30 HTTP transactions. The main domain is zhongwen.love and was registered NaN years ago.

Submitted URL: http://zhongwen.love/

Effective URL: https://zhongwen.love/Redirected

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

Phishing page impersonating Telegram on a brand‑new unranked domain.

Risk Factors
Brand impersonation (Telegram) on a non‑official domain
Domain age less than 7 days (critical new domain)
Unranked domain lacking reputation
Use of QR code login flow to capture credentials
Domain age information unavailable

Details

Page Title

Telegram

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(53%)

Domain Information

The domain name 'zhongwen.love' uses the .love top-level domain without a subdomain. Its registrable label 'zhongwen' stretches across 8 characters with two vowels and 6 consonants. Segmentation suggests 1 word: zhongwen. Median word length is 8 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://zhongwen.love/

Page Load Overview

2.51s
Total Load Time
30
HTTP Requests
4
Domains
35 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:218 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network53% confidence
Type: static
Method: ml+structural

All Detected Categories

social media network
53%
technology software
33%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1047.79.252.168Singapore
AS45102Alibaba US Technology Co., Ltd.
10149.154.167.99London, England, United Kingdom
AS62041Telegram Messenger Inc
10104.26.13.205United States
AS13335CLOUDFLARENET
303--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T107F15062E724E83A2357067D34E1F10E46E2E447D7C1AA50B9A972E20F8FDF780E7255

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:ajtSoUZZUG7Lt103pYSMCcGyqW75QhE58h:+tSGs303pcCcGyHmd

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7969:ASgC2JHAKMIZCKYcnVvIggYtCAZ0GABQgQTAIANS8CEfADACQHgAFALcAACAuZEAIGHpINAGkEFQFBiDABHFMxBidT41kAWO

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7ffffff
Perceptual Hash:b323cccc3333cccc
Difference Hash:00000c0c08000000
Wavelet Hash:3f272727041c0c0c
Color Hash:#87c5bf

Other Hashes

Crop Resistant:00000c0c08000000

Scan History

Scan history not available

Unable to load historical scan data