Security Scan Report: mortisflow.com

Redirected to:
https://mortisflow.com/login
Submitted: Apr 28, 2026, 8:02:44 PMCompleted: Apr 28, 2026, 8:04:08 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 1 HTTP transaction. The main domain is mortisflow.com and was registered NaN years ago.

Submitted URL: http://mortisflow.com/

Effective URL: https://mortisflow.com/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked domain hosting a login form; high likelihood of credential phishing (CONFIRMED_SCAM).

Risk Factors
Brand‑new domain (<7 days) with credential collection
Unranked domain (no Cisco Umbrella reputation)
Login form on a newly registered site
Social‑login buttons on an untrusted domain may be used to harvest credentials
Domain age information unavailable

Details

Page Title

login | MortisFlow

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(88%)

Domain Information

The domain name 'mortisflow.com' uses the commercial generic top-level domain (.com) and has no subdomain. The second-level label 'mortisflow' is 10 characters long containing three vowels alongside seven consonants. Tokenizing the label suggests 2 words: mortis, flow. The median word length lands at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://mortisflow.com/

Page Load Overview

2.41s
Total Load Time
28
HTTP Requests
4
Domains
705 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:263 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network88% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
88%
technology software
74%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8216.24.57.1United States
AS397273Render
565.8.131.9United States
AS16509Amazon.com, Inc.
5142.251.127.84United States
AS15169Google LLC
5146.75.120.176Frankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
5104.26.3.143United States
AS13335Cloudflare, Inc.
285--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF43D754B514223AAC2785E0E9C8B66CF126F1C2EE3694BAF58D0465EBC3FF61CD7604

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:DOhnY3Zkg+WbQkGk70rGV4xksc64Jysq7vbTDKyy3ivlM/V:ah4Zkkr7ebx/c64Jysq7vfDlyJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:58474:ABBwiRO8QmUBkYhSRREgwJEMAGATYTAXQS4RQBwMhSBOEFhL8IVARKF+gCYu2AQM6iCCcMEpCIAk4BMmIIRGAiYctIIy0Isj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7ffffffffe7e7
Perceptual Hash:f3cc6689d832cd26
Difference Hash:280c102828324c4c
Wavelet Hash:e7e3fac8d8d8c0c0
Color Hash:#2d51d2

Other Hashes

Crop Resistant:280c102828324c4c

Scan History

Scan history not available

Unable to load historical scan data