Security Scan Report: tototofm.com

Site favicon
Submitted: Sep 16, 2026, 11:47:30 PMCompleted: Sep 16, 2026, 11:48:06 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Primary domain is flagged as a malware loader and the page loads a ClearFake-associated third-party domain; avoid interacting despite no visible credential forms.

Risk Factors
Primary domain flagged as a malware loader in threat intelligence
External resource rehearsal-b.com associated with the ClearFake malware campaign
Domain is unranked in Cisco Umbrella despite being 1484 days old
Domain age information unavailable

Details

Page Title

Tototo FM – Mambo Ni Sawa

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'tototofm.com' is registered with no subdomain. The second-level label 'tototofm' is 8 characters long split between 3 vowels and 5 consonants. Segmentation suggests 4 words: to, to, to, fm. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tototofm.com

Page Load Overview

10.64s
Total Load Time
2.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:2,035 chars
Detector Agreement:50%

Website Classification

Primary Category

adult content76% confidence
Type: spa
Method: ml+structural

All Detected Categories

adult content
76%
entertainment media
53%
news media journalism
34%
healthcare medical
27%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
22198.251.89.144Luxembourg, Luxembourg, Luxembourg
AS53667FranTech Solutions
18142.251.20.95Google · CDNUnited States
AS15169Google LLC
18142.250.154.94Google · CDNUnited States
AS15169Google LLC
1857.129.136.231Bexley, England, United Kingdom
AS16276OVH SAS
18104.21.95.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
18148.113.190.42Canada
AS16276OVH SAS
1126--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BA14E7337BA8063713DB83D9B4007A1EE5A2D63BED879295B2FD02C86BF3D915913548

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:hRjAfeA6AxfA3Kgh5WksiERAtU0Crq8VYB5x9umY0T8BlNjx3wsA6P3SD7ShCbM1:4LfK3KIpLCLGkbh

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:195402:CgMUZVQeCjEuCYmgQwIwEMCxgLEEYMHgRhCxMdwIuCUsRJmBUAJKAUIAAClQNB0kAWoJECecUAUGPIqoHBQiaBI2YIIlcCCC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffdf8f898d9f9f9f
Perceptual Hash:b8e1c4c76b789c34
Difference Hash:4eb6311959743430
Wavelet Hash:a2ce8d080c1f9f9f
Color Hash:#51bf40

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data