Security Scan Report: webview.gkmh1.com

Submitted: Apr 26, 2026, 10:56:28 PMCompleted: Apr 26, 2026, 10:57:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is webview.gkmh1.com and was registered NaN years ago.

Submitted URL: https://webview.gkmh1.com/?token=zaV02BJ5smXqwyVXMB39gzajhAb

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

The site hosts a credential‑stealing login form that exfiltrates data via JavaScript; unranked domain makes it a high‑risk phishing page.

Risk Factors
Unranked/low‑reputation domain
Credential exfiltration to external server
Login form collecting credentials on a non‑trusted domain
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇨🇳

Chinese

(60% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'webview.gkmh1.com' on the commercial generic top-level domain (.com); it also runs on subdomain 'webview'. The core label 'gkmh1' covers 5 characters holding 0 vowels versus 4 consonants, plus one digit. Breaking it apart gives 4 words: g, km, h, 1. Median word length comes out to one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://webview.gkmh1.com/?token=zaV02BJ5smXqwyVXMB39gzajhAb

Page Load Overview

0.68s
Total Load Time
3
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Language Code:zh
Detection Confidence:60%
Script Type:Han
HTML Lang Attribute:zh-CN
Text Length:351 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3188.114.97.3United States
AS13335Cloudflare, Inc.
31--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1331255A965F324E27923D4F65BEA970A3974D003840FCA103FAC57989F8D9C0A953F9D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:So2bByMbJcUBnOOz6/I2z4Tr5OnLiynat0QLXCXqHJ0sxDaUMPZUmQ2wehG:SoEPyUVzvbHvaWcG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9382:CLBQQgolBjAIjBUrgI0ElQHGkjCBXUAiQQQAIOIAkAUoRMdGZGQnEAtllBEQgwsbQghQIIy7pBFgIIIESogAFEkqUQIziW4N

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffdf00000000
Perceptual Hash:93b373646c983666
Difference Hash:5c0a2a1004110000
Wavelet Hash:ffffffff00000000
Color Hash:#c5879e

Other Hashes

Crop Resistant:5c0a2a1004110000

Scan History

Scan history not available

Unable to load historical scan data