Security Scan Report: pwd.nxshchj.com

Submitted: Mar 31, 2026, 10:41:20 AMCompleted: Mar 31, 2026, 10:42:40 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is pwd.nxshchj.com and was registered NaN years ago.

Submitted URL: https://pwd.nxshchj.com/?token=hRxT92yUigzULwyT9gza1gCKn3zLHwBa

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

The site harvests login credentials via JavaScript; treat as a credential phishing page.

Risk Factors
Credential exfiltration via JavaScript
Presence of a password field on a non‑brand domain
Unranked domain increases suspicion
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

e-commerce shopping

(80%)

Domain Information

The domain 'pwd.nxshchj.com' uses the commercial generic top-level domain (.com) and includes subdomain 'pwd'. Its registrable label 'nxshchj' stretches across 7 characters split between 0 vowels and 7 consonants. It segments into three words: nx, shc, hj. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pwd.nxshchj.com/?token=hRxT92yUigzULwyT9gza1gCKn3zLHwBa

Page Load Overview

0.73s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:313 chars
Detector Agreement:100%

Website Classification

Primary Category

e-commerce shopping80% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

e-commerce shopping
80%
healthcare medical
66%
documentation technical
61%
cryptocurrency blockchain
61%
adult content
59%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1188.114.96.3United States
AS13335Cloudflare, Inc.
1188.114.97.3United States
AS13335Cloudflare, Inc.
32--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F4126559A5F324E27927D4F65BEA970A3974D003840ECA103FAC57988F8D9C1AD63F8D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:So2bByMbJcUBnOOz6/I2z4Tr5OnLiynat0QLXCXqHsSxIsRv/+eTmQ2wehG:SoEPyUVzvbH+sd5cG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9285:DLhRxBoRArAYxBVhAJ0AjinA2bHE1bgiaAEAJPIA0QQ45GQOJQQCCADFFBU6BRACQCIBcJQLoBlwIIskAoAENYgrwgAWhdgF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:efffffdf00000000
Perceptual Hash:b3b333646c983666
Difference Hash:5c0a2a1004110000
Wavelet Hash:ffffffff00000000
Color Hash:#1f9355

Other Hashes

Crop Resistant:5c0a2a1004110000

Scan History

Scan history not available

Unable to load historical scan data