Security Scan Report: gftcryptorule.com

Site favicon
Submitted: Nov 6, 2025, 2:21:55 AMCompleted: Nov 6, 2025, 2:22:25 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 2 domains to perform 10 HTTP transactions. The main domain is gftcryptorule.com and was registered NaN years ago.

Submitted URL: https://gftcryptorule.com/Login/register

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked domain impersonating Google with hidden password fields – confirmed phishing scam.

Risk Factors
Hidden password fields not visible to the user
Brand impersonation/typosquatting (Google branding on gftcryptorule.com)
Domain registered within 7 days
Credential harvesting form on a brand‑impersonating site
Unranked domain in Cisco Umbrella while claiming a major brand
Domain age information unavailable

Details

Page Title

GFT Crypto

Scan Type

public

Language

🇺🇸

English

(65% confidence)

Category

unknown

(0%)

Domain Information

Domain 'gftcryptorule.com' uses the commercial generic top-level domain (.com) without a subdomain. Its registrable label 'gftcryptorule' stretches across 13 characters with 3 vowels and 10 consonants. Word splitting yields four words: g, ft, crypto, rule. Median word length comes out to 3 characters. 'g' most strongly signals English. It also appears in Chinese (Pinyin) and Sinhala contexts.

Screenshot

Security scan screenshot of https://gftcryptorule.com/Login/register

Page Load Overview

14.46s
Total Load Time
10
HTTP Requests
2
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:65%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:65%
Script Type:Latin
Text Length:65,830 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2172.93.220.38Japan
AS3258xTom Japan Corporation
2118.107.44.62Singapore
AS152194CTG Server Limited
2134.122.173.178Singapore
AS152194CTG Server Limited
2134.122.189.6Singapore
AS152194CTG Server Limited
227.124.9.124Shatin, Sha Tin, Hong Kong
AS152194CTG Server Limited
105--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T173F3E95B934D23F20AD202952BA696C5F32B803D37769F51356C912C2BC6F38523B6DE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:+884UiUYDYIauGvUGRD6P6t4cBh/xoHgkfSW2gmu+6P6t4cBh/xoHgkfSW2gmHe:DUiHDfauGvZD6P6tlBh/uz2a+6P6tlBA

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:169438:UDiwgS4qAIWUroZoOgI1MkhSNGAQAwEC0AsUUXia4AAkA4UJJCW5gKiAijCiWw1gCMxAWa8AfaJwaAFxFAAKaV0F0TQELGQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0c0e0c0c0c0c3c0c
Perceptual Hash:936c6c936d666983
Difference Hash:d8d8d8dcd8d8ccd8
Wavelet Hash:0c3e2e3e2e3e3e0c
Color Hash:#c5c187

Scan History

Scan history not available

Unable to load historical scan data