Security Scan Report: phucpathscan.com

Redirected to:
https://phucpathscan.com/login
Site favicon
Submitted: May 15, 2026, 6:37:09 PMCompleted: May 15, 2026, 6:38:47 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 28 HTTP transactions. The main domain is phucpathscan.com and was registered NaN years ago.

Submitted URL: https://phucpathscan.com/

Effective URL: https://phucpathscan.com/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

The site is a newly registered domain impersonating Google with a credential‑stealing login form and critical malware alerts – confirmed phishing scam.

Risk Factors
New domain (<7 days)
Brand impersonation (Google)
Login form with credentials
Critical IDS alerts (malware C2 and data exfiltration)
Unranked domain reputation
Domain age information unavailable

Details

Page Title

login | Pro-Health View

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(45%)

Domain Information

The domain 'phucpathscan.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. Count 12 characters in 'phucpathscan' holding three vowels versus nine consonants. Breaking it apart gives four words: ph, uc, paths, can. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phucpathscan.com/

Page Load Overview

2.36s
Total Load Time
33
HTTP Requests
5
Domains
303 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:206 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software45% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
45%
healthcare medical
43%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9216.24.57.1United States
AS397273Render
6142.251.127.84United States
AS15169Google LLC
665.8.131.42United States
AS16509Amazon.com, Inc.
6172.67.68.11United States
AS13335Cloudflare, Inc.
6146.75.120.176Frankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
335--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B643C754B514223AAC2785E0DAC8B66CF126F182EE3694FAF58D0465EFC2FF61CD7604

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:DthnY3Zkg+WbQkGk70rGV4xksc64Jysq7vRDTyJvlM/W:xh4Zkkr7ebx/c64Jysq7vRDGJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:55288:gBCQbAACFruMBJUqICAWGgiwp22hTUkwpkkNAI2BEGIgKSYAMAJCAJAqJTUCUO4ArVCEACKgBMBhIXkAcYQiGYkKU1BAKDQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7ffffe7e7fe
Perceptual Hash:f3cc6623d8769922
Difference Hash:00220c2a320c4d10
Wavelet Hash:fffbe0d8d8980000
Color Hash:#3a4a78

Other Hashes

Crop Resistant:00220c2a320c4d10

Scan History

Scan history not available

Unable to load historical scan data