Security Scan Report: cloud12.spamtitan.com

Redirected to:
https://cloudp-ui.spamtitan.com/auth/sign-in
Site favicon
Submitted: Jul 14, 2026, 9:23:37 PMCompleted: Jul 14, 2026, 9:24:53 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 2 HTTP transactions. The main domain is cloudp-ui.spamtitan.com and was registered NaN years ago.

Submitted URL: https://cloud12.spamtitan.com

Effective URL: https://cloudp-ui.spamtitan.com/auth/sign-inRedirected

The Cisco Umbrella rank of the primary domain is #305,152 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 88%

3
Risk Score

The site impersonates SpamTitan and harvests credentials; treat as high‑risk phishing.

Risk Factors
Credential collection on a non‑official brand domain
Brand impersonation of SpamTitan
Low Cisco Umbrella ranking (#305,152) for a claimed brand
Critical JavaScript obfuscation
Safety Factors
Domain is well‑established (over 20 years old)
No known Indicators of Compromise or malware YARA matches
Cross‑origin form submission appears to be a legitimate SSO flow
Top-ranked domain (Cisco Umbrella #305,152, 7454 days old) with no strong malicious indicators — a login form on a household-name site is normal; risk clamped from 8 to 3
Domain age information unavailable

Details

Page Title

SpamTitan

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

phishing scam

(52%)

Domain Information

You're looking at domain 'cloud12.spamtitan.com' on the commercial generic top-level domain (.com), featuring subdomain 'cloud12'. Its registrable label 'spamtitan' stretches across 9 characters with 3 vowels and 6 consonants. Splitting it apart reveals two words: spam, titan. Expect 4.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://cloud12.spamtitan.com

Page Load Overview

2.20s
Total Load Time
22
HTTP Requests
7
Domains
829 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:168 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing scam52% confidence
Type: webapp
Method: ml+structural

All Detected Categories

phishing scam
52%
technology software
48%
adult content
43%
cryptocurrency blockchain
40%
documentation technical
32%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
899.84.152.55Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
765.8.131.104Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
73.19.87.175Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
223--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11AB1B6366460109E2EA385E276A8F61FE51AF00FF7AE7DF4B024D29837C1D168587AC4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:mN/L22BV4xstJzwGnvqlM2dMadZ8OvqlM2dMadZ82mC2kgd2A38Dl:y/LrV4xNGvqlMMMIZ80qlMMMIZ8mG2L

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5563:AJCwgQUJAIAQAFZIChSBCQlIXqRJQAcQAAhYCAnAggIgBigKxkBKAoRAAYECAghECkE0KKkFwAAAIQWIMgAgIQKskBWoQBEA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffee7fbdbc18181
Perceptual Hash:edd032e99d623362
Difference Hash:18300c3232030f1b
Wavelet Hash:cef8e0fbdb818181
Color Hash:#a0d279

Scan History

Scan history not available

Unable to load historical scan data