Security Scan Report: r4.shuiyuntang.com

Site favicon
Submitted: Jun 14, 2026, 9:31:48 AMCompleted: Jun 14, 2026, 9:32:56 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is r4.shuiyuntang.com and was registered NaN years ago.

Submitted URL: https://r4.shuiyuntang.com/?token=PlQT92yUigzULwyT9gzajhAa

AI Security Verdict

High Risk

Confidence: 80%

6
Risk Score

The page is a generic account‑suspension phishing page collecting credentials; treat as credential phishing and avoid interaction.

Risk Factors
Unranked domain hosting a credential collection form
Generic phishing lure (account suspension) with no brand verification
Login form on a site with low reputation
Domain age information unavailable

Details

Page Title

Account Suspension Notification

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

finance banking

(76%)

Domain Information

The domain 'r4.shuiyuntang.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'r4'. Its registrable label 'shuiyuntang' stretches across 11 characters with four vowels and seven consonants. It segments into three words: shui, yun, tang. The median word length lands at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://r4.shuiyuntang.com/?token=PlQT92yUigzULwyT9gzajhAa

Page Load Overview

1.01s
Total Load Time
4
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:cn
Text Length:380 chars
Detector Agreement:50%
Language mismatch: Declared as cn but detected as zh

Website Classification

Primary Category

finance banking76% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
76%
cryptocurrency blockchain
74%
adult content
69%
documentation technical
64%
healthcare medical
61%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4188.114.96.3United States
AS13335Cloudflare, Inc.
41--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T169112F46EA44001DB4D64198FE66A2997BA680F0A15A0B2C7CC9D535C39DB28C9FF06C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hR/C0A4UVHrk+G93hI4S0qX46bv4pUjka:TcvN49x19iFwpUt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:867:ACAAAQAAIBhEAAAACAAAAAAAAIAAAAABAAAgAAAAAAAAAAAAAAACAAACAAAAAAAAAAAAAAAEAABAAAAAAEQwCAAAABAAAAEA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c7c7fff7ffffffff
Perceptual Hash:b333332666cecc89
Difference Hash:0c1c100400000000
Wavelet Hash:c4c4fcd4f0f0f0f0
Color Hash:#53a8ac

Other Hashes

Crop Resistant:0c1c100400000000

Scan History

Scan history not available

Unable to load historical scan data