Security Scan Report: www.gltfms.com

Submitted: Dec 30, 2025, 2:34:04 AMCompleted: Dec 30, 2025, 2:37:09 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 2 domains to perform 3 HTTP transactions. The main domain is gltfms.com and was registered NaN years ago.

Submitted URL: https://www.gltfms.com/[email protected]

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Phishing login page impersonating Roundcube Webmail; do not enter credentials.

Risk Factors
Brand impersonation (mimics Roundcube Webmail)
Credential harvesting login form on a suspicious domain
Unranked domain presenting a well‑known service
Domain age information unavailable

Details

Page Title

Roundcube Webmail __ Welcome to Roundcube Webmail

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

cryptocurrency blockchain

(49%)

Domain Information

Within the commercial generic top-level domain (.com), 'www.gltfms.com' is registered with subdomain 'www'. The second-level label 'gltfms' is 6 characters long with 0 vowels and six consonants. Segmentation suggests 4 words: g, lt, fm, s. Average segment length settles at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.gltfms.com/wp-login.html?cms=je@sekure.net

Page Load Overview

28.27s
Total Load Time
3
HTTP Requests
2
Domains
320 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:115 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain49% confidence
Type: static
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
49%
news media journalism
41%
technology software
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
168.178.163.30United States
AS26496AS-26496-GO-DADDY-COM-LLC
1104.17.24.14United States
AS13335CLOUDFLARENET
1104.17.25.14United States
AS13335CLOUDFLARENET
33--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11C44021999A33A922C33E72E63AB2DC25F764183F824DD7F7A4D11904FCEB484855F28

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:hatrvWW6dRYB7cj2nkD92SeHs/XUNNWc4XidEECOn99Tcoeb4Yvm:ir6d2A+XJMfUQcccCm

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:272362:C0oAEFEtEHAgzgTUSSlQCECeAYAGI1ABgAgQQk+AgQEIPjFERPRlpCKBtUPexQKaAIRyATNEEIaEAKCiW7CwQp0IqJJ+oBEA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7e7e7ffffff
Perceptual Hash:b333cccc263399cc
Difference Hash:0008080c0c000000
Wavelet Hash:3c242424273f3f3f
Color Hash:#c72dd2

Other Hashes

Crop Resistant:0008080c0c000000

Scan History

Scan history not available

Unable to load historical scan data