Security Scan Report: 558w.com

Redirected to:
https://558w.com/405
Site favicon
Submitted: Aug 12, 2026, 1:27:40 AMCompleted: Aug 12, 2026, 1:28:53 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 2 HTTP transactions. The main domain is 558w.com and was registered NaN years ago.

Submitted URL: https://558w.com

Effective URL: https://558w.com/405Redirected

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

Page hosts a known malicious IP and impersonates a brand without legitimate forms, indicating high‑risk phishing or malicious activity.

Risk Factors
Threat‑intel match on server IP
Brand mismatch between domain and meta tags
Unranked / low‑reputation domain
Safety Factors
Domain age 7632 days (well‑established)
No forms collecting credentials or payments
No JavaScript malware or IDS alerts detected
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 7 to 5
Domain age information unavailable

Details

Page Title

JiLi56.COM

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

documentation technical

(42%)

Domain Information

Within the commercial generic top-level domain (.com), '558w.com' is registered while skipping any subdomain. Count 4 characters in '558w' holding 0 vowels versus one consonant, plus 3 digits. Breaking it apart gives 2 words: 558, w. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://558w.com

Page Load Overview

5.84s
Total Load Time
118
HTTP Requests
8
Domains
4.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:224 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical42% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

documentation technical
42%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
31149.154.167.99Amsterdam, North Holland, Netherlands
AS62041Telegram Messenger Inc
29163.181.254.192United States
AS24429Zhejiang Taobao Network Co.,Ltd
29104.18.95.41Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
29104.18.11.7Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1184--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12723B5E796AE541C2BDA3602C585B8990B96860F4DC1BB40B38F6E365BC5FC0770B27D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Pg8uC2WZbaKqw39MiOdQsGosXs7W8Tvlj7xiBTF+Ruz7aNt+y9i9d3F6yQxTGsUm:I8uC2WZlnVOlKTRsP9cgt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:48114:MACTgAEE2kFEAAMJU0iVEQEB7UAQSNaTAGEkjIiLoGCAEQJBRx92UIJZA2ACREcCBHAgVGELtkAgBokIAbYTgJAGGqaQKiJC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7c3dbdbe7e7e7e7
Perceptual Hash:b1d96666268999d9
Difference Hash:4c541414144c4c4c
Wavelet Hash:c3c3dbdb03030303
Color Hash:#bf6e40

Other Hashes

Crop Resistant:4c541414144c4c4c

Scan History

Scan history not available

Unable to load historical scan data