Security Scan Report: rubix.click

Redirected to:
https://rubix.click/#/login
Submitted: Apr 13, 2026, 12:25:29 PMCompleted: Apr 13, 2026, 12:26:52 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 2 domains to perform 27 HTTP transactions. The main domain is rubix.click and was registered NaN years ago.

Submitted URL: https://rubix.click

Effective URL: https://rubix.click/#/loginRedirected

The Cisco Umbrella rank of the primary domain is #197,380 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

The site hosts a generic login form on an old, low‑rank domain; signs point to possible credential phishing despite lack of explicit brand impersonation.

Risk Factors
Low Cisco Umbrella ranking for a domain claiming a login page
Presence of a credential‑collection form on a generic, non‑branded site
OCR text shows garbled 'Login with Google' hinting at possible spoofing
Safety Factors
Domain age >7 years (well‑established)
No malicious Indicators of Compromise or JavaScript malware detected
No external malicious links or cross‑origin credential exfiltration
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(72% confidence)

Category

phishing/scam

(40%)

Domain Information

The domain 'rubix.click' uses the .click top-level domain without a subdomain. Its registrable label 'rubix' stretches across 5 characters split between 2 vowels and 3 consonants. It segments into 2 words: rub, ix. The median word length lands at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://rubix.click

Page Load Overview

2.05s
Total Load Time
16
HTTP Requests
2
Domains
259 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:72%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:72%
Script Type:Latin
Text Length:23 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing/scam40% confidence
Type: webapp
Method: structural

All Detected Categories

phishing/scam
40%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1613.226.244.42United States
AS16509Amazon.com, Inc.
161--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12EB26556AC634926181B729363EBA71E237972879F06FC46F9CF13E15F827B0356A310

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:Pet9urRab/dJgpCsuJgpCsHpWDcuiueyO9wCiySHiA12+OTd/Fz1B5DIa35m6LtF:Pet9urRaZJRJOpP0mvZCFyujUAq

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:23526:LYAECRh6NhAAJX6MAJMixAhBHEx9giuJJCJTpBFARDcIIuJMQg5IDAKkM5UnBdSIIolIGEEBTFIACFYB1MwgAIn8mKcmRIIQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff83e3ffffe3
Perceptual Hash:e699669966992699
Difference Hash:0064702e46301024
Wavelet Hash:83fffec2e2868c80
Color Hash:#57783a

Other Hashes

Crop Resistant:0064702e46301024

Scan History

Scan history not available

Unable to load historical scan data