Security Scan Report: www.bqzl36.vip

Redirected to:
https://www.gbhjql.vip:9083/register23179?i_code=73104968
Site favicon
Submitted: Sep 17, 2026, 10:47:32 PMCompleted: Sep 17, 2026, 10:48:20 PMpubliccompleted

This website contacted 4 IPs in 3 countries across 3 domains to perform 37 HTTP transactions. The main domain is gbhjql.vip and was registered 2 months ago.

Submitted URL: https://www.bqzl36.vip

Effective URL:

https://www.gbhjql.vip:9083/register23179?i_code=73104968
Redirected

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Unlicensed betting registration page impersonating 开云体育 (Kaiyun Sports) on an unrelated .vip domain, redirecting to gbhjql.vip:9083 and collecting passwords; entry domain also flagged for Formbook malware. Avoid.

Risk Factors
Impersonation of the gambling brand 开云体育 (Kaiyun Sports) on a non-official domain
Credential-collecting registration form (password + confirm password + identifier) on an unrelated domain
Threat-intel indicator for the Formbook malware family on the entry domain (single-source, unverified)
Multi-domain redirect landing on a non-standard port (:9083)
Unranked domain with no verifiable operator identity
Domain age information unavailable

Details

Page Title

球俱乐部官方区域合作伙伴    开云体育官网-皇家马德里足

Scan Type

public

Domain Name Analysis

Domain 'www.bqzl36.vip' uses the .vip top-level domain with subdomain 'www'. The second-level label 'bqzl36' is 6 characters long split between zero vowels and four consonants, along with 2 digits. Breaking it apart gives 3 words: bq, zl, 36. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.bqzl36.vip

Page Load Overview

23.93s
Total Load Time
906 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Text Length:126 chars
Detector Agreement:50%

Website Classification

Primary Category

adult content28% confidence
Type: spa
Method: ml+structural

All Detected Categories

adult content
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1013.70.30.8Azure · CLOUDHong Kong, Hong Kong
AS8075Microsoft Corporation
9154.220.10.112Seychelles
AS135097LUOGELANG (FRANCE) LIMITED
943.243.240.205Hong Kong
AS153494XRUI TECHNOLOGY LIMITED
943.251.114.42Australia
AS132825MYTEK TRADING PTY LTD
374--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T189C23C334909B8730D363C9AE1E26A4E1C0CD21AD56346C4F2ADF6EAD6DEF0A5C0F494

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:dEhxQCp8MZThmqdOTBtSk99MjFVuA+udC8:dohJdOFLMjFVxL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:26627:FFaRAkIh1SAZ+BEJJCxDCLCE62CBNVEAhyELCJX8mDCAQCwNAJgAgC4kw4gbJ4YAsGuAABkjCgi8IoQEQKLAE+AXA0lYpFBo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff1818181000
Perceptual Hash:cc8cb306369e9de2
Difference Hash:e0f0b2b2b2b2b0e0
Wavelet Hash:ffffff1818181800
Color Hash:#87c58f

Other Hashes

Crop Resistant:e0f0b2b2b2b2b0e0

Scan History

Scan history not available

Unable to load historical scan data