Security Scan Report: ortto.mail.elskling.se

Site favicon
Submitted: Sep 17, 2026, 2:56:21 PMCompleted: Sep 17, 2026, 2:56:42 PMpubliccompleted

This website contacted 17 IPs in 2 countries across 8 domains to perform 32 HTTP transactions. The main domain is ortto.mail.elskling.se and was registered 7 years ago.

Submitted URL: https://ortto.mail.elskling.se/-/m/s/preferences?k=CmVsc2tsaW5nc2UAakFtKBVUMDyYawtgaqv-TG4_cvxeVFNBqYr8&rg=eu

AI Security Verdict

Safe Website

Confidence: 95%

0
Risk Score

Legitimate Elskling SE email preferences page on an established domain. No phishing, credential harvesting, or malware indicators present.

Safety Factors
Established domain age (7267 days)
Self-branding matches the domain
Only unsubscribe/save preference controls, no sensitive data collection
No Indicators of Compromise or malware detections
IDS alerts are informational ZeroSSL certificate observations only
Domain age information unavailable

Details

Page Title

Email preferences - Elskling SE

Scan Type

public

Domain Name Analysis

The domain 'ortto.mail.elskling.se' uses the Swedish country-code top-level domain (.se) and includes subdomain 'ortto.mail'. Count 8 characters in 'elskling' with 2 vowels and 6 consonants. Tokenizing the label suggests two words: els, kling. Median word length is 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ortto.mail.elskling.se/-/m/s/preferences?k=CmVsc2tsaW5nc2UAakFtKBVUMDyYawtgaqv-TG4_cvxeVFNBqYr8&rg=eu

Page Load Overview

3.83s
Total Load Time
1.4 MB
Total Size

Language Analysis

Primary Language

🇸🇪Swedish
Code: sv
Confidence:44%
Script:Latin
Direction:ltr

Detection Details

Text Length:471 chars
Detector Agreement:50%

Website Classification

Primary Category

finance banking42% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
42%
technology software
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
163.73.199.118Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
165.9.130.118Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
13.23.199.68Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
13.124.109.78Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
165.9.130.104Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
165.9.130.50Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
165.9.130.46Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
13.23.106.204Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
152.59.20.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
13.16.239.42Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
3217--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14442CEB756E654129B4299DC82153315D532883EECF0BCC3FCD4E81C74B5FA98ADE2A8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:hzZrs0KjOHnfX6vDRyaJxDuMmoqAXUqwDYc:hzW0KjPpDumEq8

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:12818:EyK2iFEMIQdsgs1UsKYYFASRog0ynJBkpAJAAQTgHDCFIAQFDhQUCA0KUhgQKhSAh4mFDFKMmBZQbBGzGEIO0AiaqWBNESgA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7c7c7cfcfffffff
Perceptual Hash:b13367c68ecec630
Difference Hash:4a0c1c1010020202
Wavelet Hash:e0c0c0ccdcfcf0f0
Color Hash:#2d1f93

Other Hashes

Crop Resistant:4a0c1c1010020202

Scan History

Scan history not available

Unable to load historical scan data