Security Scan Report: vico.daqinwenquan.com

Submitted: Oct 16, 2025, 1:17:54 AMCompleted: Oct 16, 2025, 1:18:11 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is vico.daqinwenquan.com and was registered NaN years ago.

Submitted URL: https://vico.daqinwenquan.com/?token=lex02BJ5smXqwyVXMB39gzajhAb

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Phishing site harvesting credentials – high risk.

Risk Factors
Credential harvesting form on a domain with no established reputation
Hidden password field indicates attempt to capture credentials without user awareness
Domain age information unavailable

Details

Page Title

正在处理

Scan Type

public

Language

🏳️

CN

(80% confidence)

Category

technology software

(89%)

Domain Information

Domain 'vico.daqinwenquan.com' uses the commercial generic top-level domain (.com), featuring subdomain 'vico'. Count 12 characters in 'daqinwenquan' with five vowels and 7 consonants. Splitting it apart reveals 4 words: da, qin, wen, quan. Average segment length settles at 3 characters. 'da' most often appears in Bosnian. It also appears in Serbian and Croatian contexts.

Screenshot

Security scan screenshot of https://vico.daqinwenquan.com/?token=lex02BJ5smXqwyVXMB39gzajhAb

Page Load Overview

3.45s
Total Load Time
4
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🏳️CN
Code: cn
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:cn
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:cn
Text Length:102 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software89% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
89%
cryptocurrency blockchain
89%
documentation technical
73%
finance banking
56%
government public service
49%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1188.114.97.3United States
AS13335CLOUDFLARENET
1188.114.96.3United States
AS13335CLOUDFLARENET
12a06:98c1:3120::3United States
AS13335CLOUDFLARENET
12a06:98c1:3121::3United States
AS13335CLOUDFLARENET
44--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D3A1C723B1496452B1A7DAE91CF2475E33568201E20BD6B87EFC2368C3CDD55ED72388

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:AS1DyzJpMgj5aNXyRzYD80n7pyNUwxnQK88/outeX1dMD:AS1V7XOzY1MUwZ3TtF

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4853:YAAQhIAAMAIAEIAiGGKBZKIgMBEAQQQACAWgECEEAWAwFAAQwgABAAJgpADAAAEBwLgEZSwcKMEAIAgRAWAMACAAATDAAMkA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff020303000000ff
Perceptual Hash:b525da5acab4b514
Difference Hash:391636367e3878aa
Wavelet Hash:ff030303000e7fff
Color Hash:#e06cac

Scan History

Scan history not available

Unable to load historical scan data