Security Scan Report: toho1040online.ritsumei.net

Redirected to:
https://toho1040online.ritsumei.net/index.php/apps/user_saml/saml/sele...
Site favicon
Submitted: Nov 24, 2025, 12:08:50 AMCompleted: Nov 24, 2025, 12:10:21 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 32 HTTP transactions. The main domain is toho1040online.ritsumei.net and was registered NaN years ago.

Submitted URL: https://toho1040online.ritsumei.net/index.php/login

Effective URL: https://toho1040online.ritsumei.net/index.php/apps/user_saml/saml/selectUserBackEnd?redirectUrl=Redirected

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

High‑risk phishing page impersonating Google; do not trust.

Risk Factors
Brand impersonation on an unrelated, low‑reputation domain
Unranked domain presenting a well‑known brand name
Domain age less than 6 months (moderately new) combined with brand spoofing
Domain age information unavailable

Details

Page Title

Nextcloud

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(72%)

Domain Information

Within the network infrastructure generic top-level domain (.net), 'toho1040online.ritsumei.net' is registered, featuring subdomain 'toho1040online'. Count 8 characters in 'ritsumei' holding four vowels versus four consonants. It segments into 4 words: r, its, ume, i. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://toho1040online.ritsumei.net/index.php/login

Page Load Overview

3.70s
Total Load Time
32
HTTP Requests
1
Domains
1.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:203 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software72% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
72%
real estate property
33%
documentation technical
32%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
32163.44.177.23Japan
AS7506GMO Internet Group, Inc.
321--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150A2F812654B0FFDE54246066AADF93D834DB9C239A08499C7E61CCE15C2DABF0760DF

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:iggx32ehQ5qTZdrxXwnWmYvspLTXy42EJs+iDzD+k6mbtTElrD8ii3V0lRGu6nPG:i5x3nhQ5qTZdrxXwnWmYvspLe42tfT+f

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:22623:mBKwKOGaGiZihCgojAFgAJyITAsISIIhKL35lEbApCQyADbAToCzIgk2AgXiMAKIAgoTfIwSg1IVcBDQJTFORgBDULKDgGAs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:001838707c7ee100
Perceptual Hash:cd1c38c31e72c33e
Difference Hash:f0f0e0c0e1c08f73
Wavelet Hash:207878f8fcfee300
Color Hash:#8b79d2

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data