Security Scan Report: red.xiuchunlu.com

Submitted: Apr 13, 2026, 7:05:44 AMCompleted: Apr 13, 2026, 7:06:54 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is red.xiuchunlu.com and was registered NaN years ago.

Submitted URL: https://red.xiuchunlu.com/?token=qMTqxzU5szYv3ALnhqUfgzY9MAb

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

Low risk site with a login form; no strong malicious indicators, but caution advised due to unranked domain and eval usage.

Risk Factors
Unranked domain reputation
Presence of eval() in inline script
Credential collection form on a non‑brand domain
Safety Factors
Domain age > 2.5 years (well established)
No Indicators of Compromise matched
No JavaScript malware YARA patterns detected
No network IDS alerts
Domain age information unavailable

Details

Page Title

验证处理中

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

finance banking

(69%)

Domain Information

The domain name 'red.xiuchunlu.com' uses the commercial generic top-level domain (.com) and includes subdomain 'red'. The second-level label 'xiuchunlu' is 9 characters long with four vowels and 5 consonants. Segmentation suggests four words: xi, u, chun, lu. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://red.xiuchunlu.com/?token=qMTqxzU5szYv3ALnhqUfgzY9MAb

Page Load Overview

1.06s
Total Load Time
4
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:cn
Text Length:314 chars
Detector Agreement:50%
Language mismatch: Declared as cn but detected as zh

Website Classification

Primary Category

finance banking69% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
69%
cryptocurrency blockchain
65%
adult content
65%
healthcare medical
56%
government public service
51%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2188.114.96.3United States
AS13335Cloudflare, Inc.
2188.114.97.3United States
AS13335Cloudflare, Inc.
42--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12C12646763F300A2A827E9E61BDB075A33A4C107C10ECD157FDC62549F89D96EA52B4C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:AS1iPlOv7CMPZwq907npMy+RJMObU3jZwZ3TtN:hNqzZ+3r

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9772:OoJmgAMCFqQmCqhQEgE5uS2BZgWHAJhlI0aKJYIQoGRAEsFgEE4QBYIUDqAMKQCLBGngoEcB03JE6VAGBCxoSRRTsSYC83Jb

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffcece0e0e0e0ff
Perceptual Hash:d6b6a869a96cbc12
Difference Hash:320c2c0000000000
Wavelet Hash:dfe4cce0c0c0c0ff
Color Hash:#d66ce0

Other Hashes

Crop Resistant:320c2c0000000000

Scan History

Scan history not available

Unable to load historical scan data