Security Scan Report: phishing-test2.scanmalware.com

Submitted: Mar 30, 2026, 7:33:26 PMCompleted: Mar 30, 2026, 7:34:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 4 HTTP transactions. The main domain is phishing-test2.scanmalware.com and was registered NaN years ago.

Submitted URL: https://phishing-test2.scanmalware.com

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Site hosts a malicious login page impersonating Microsoft; avoid and report.

Risk Factors
Known malicious Indicators of Compromise (malicious IP)
Credential harvesting login form
Brand impersonation on untrusted domain
Unranked domain with brand claim
Suspicious external CDN reference
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(78%)

Domain Information

Domain 'phishing-test2.scanmalware.com' uses the commercial generic top-level domain (.com) and includes subdomain 'phishing-test2'. Its registrable label 'scanmalware' stretches across 11 characters containing 4 vowels alongside 7 consonants. Splitting it apart reveals 3 words: s, can, malware. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phishing-test2.scanmalware.com

Page Load Overview

0.61s
Total Load Time
4
HTTP Requests
2
Domains
8 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:349 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software78% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
78%
adult content
48%
phishing scam
46%
government public service
46%
documentation technical
44%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2206.189.1.124Amsterdam, North Holland, Netherlands
AS14061DigitalOcean, LLC
223.207.210.132Netherlands
42--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13F71322260F0047306C396D17AE69F0F3ED1C553EE07451836FC4A9D8FA7E86A9132A9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:TBrWgJwBdd1XZBj08XyCUewEtSm9aFLrlSURJheaZoKs9i9yNYmx+U2wwjy9GYkK:TBr/OzXZBjmeziF9SUnso9exxV3

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3793:NBICAgAQoFAEQAFAgEhBAAAEKCIAAwAAAAgAAQAChCEACwUkcGGVAACKCAAKHEAEDJoTAEAgBAAkBAAAIEAgCIACAAiRggAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffff000000
Perceptual Hash:d9a2665ca33359a6
Difference Hash:0008305a2a320c00
Wavelet Hash:ffffffff00000000
Color Hash:#53a2ac

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data