Security Scan Report: astrax.vip

Site favicon
Submitted: Nov 5, 2025, 10:22:49 AMCompleted: Nov 5, 2025, 10:25:57 AMpubliccompleted
Loading additional data...

Summary

This website contacted 18 IPs in 3 countries across 4 domains to perform 41 HTTP transactions. The main domain is astrax.vip and was registered NaN years ago.

Submitted URL: https://astrax.vip/

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

New unranked site impersonating a crypto brand; high‑risk phishing.

Risk Factors
Brand impersonation on a newly registered, unranked domain
Critical domain age (<7 days) indicating likely malicious intent
Lack of any legitimate reputation or ranking
Use of high‑pressure investment language to lure users
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

cryptocurrency blockchain

(90%)

Domain Information

The domain name 'astrax.vip' uses the .vip top-level domain with no subdomain. The core label 'astrax' covers 6 characters with two vowels and four consonants. Splitting it apart reveals two words: as, trax. Median word length comes out to 3 characters. 'as' is most common in Galician usage. You may catch it in Portuguese and Portuguese (Brazil) as well.

Screenshot

Security scan screenshot of https://astrax.vip/

Page Load Overview

6.74s
Total Load Time
41
HTTP Requests
4
Domains
57 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:zh-CN
Text Length:1,023 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

cryptocurrency blockchain90% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
90%
finance banking
40%
technology software
38%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
39104.21.55.87United States
AS13335CLOUDFLARENET
2106.54.228.253Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
2172.67.146.92United States
AS13335CLOUDFLARENET
2163.181.92.198Frankfurt am Main, Hesse, Germany
AS24429Zhejiang Taobao Network Co.,Ltd
22408:4005:30a:4302:6218:d8d9:db29:5dd8Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
22606:4700:3035::6815:3757United States
AS13335CLOUDFLARENET
2124.221.80.91Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
2111.231.169.247Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
22408:4005:30a:4302:6218:d8d9:db29:5dd6Hangzhou, Zhejiang, China
AS37963Hangzhou Alibaba Advertising Co.,Ltd.
2118.25.42.241Shanghai, Shanghai, China
AS45090Shenzhen Tencent Computer Systems Company Limited
4118--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16F74E821971B25276137CAAC76C0EA4C5F19C333D4624A6AFE95391DCBD39CA1263B0F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:22mDo28Y7SrW3YeWXA1u9w4HCe/l4zUg2fqME4jQ378OaiZkW1Yu8e2Je4K7fTLZ:8BP8jhIfaGBqTBIDUPCtF0YtD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:364743:AzmYFIWICKJAAAAMAAUgEMwAAwCgAIg5DQIxoAAOTAjmIbFARKUgsRecA9ZEO0gwTQPB2K/UKEZyOgELFBFEgQAEcyGIISyS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f07e18ffff003839
Perceptual Hash:c2c3c763e74362c3
Difference Hash:41f4f195c0216969
Wavelet Hash:f07e007fff003839
Color Hash:#4c783a

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data