Security Scan Report: phamtom.us

Redirected to: https://www.phamtom.us/

Submitted: Jan 23, 2026, 11:48:51 PMCompleted: Jan 23, 2026, 11:50:03 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 2 countries across 8 domains to perform 105 HTTP transactions. The main domain is phamtom.us and was registered NaN years ago.

Submitted URL: https://phamtom.us/

Effective URL: https://www.phamtom.us/Redirected

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

Site impersonates Google on a brand‑new unranked domain – high‑risk phishing.

Risk Factors
Brand impersonation (Google) on a non‑Google domain
Domain registered less than 7 days ago
Unranked domain in Cisco Umbrella
Mismatch between displayed brand and domain name
Domain age information unavailable

Details

Page Title

Sign in - Google Accounts

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

documentation technical

(63%)

Domain Information

Domain 'phamtom.us' uses the United States country-code top-level domain (.us). Its registrable label 'phamtom' stretches across 7 characters containing 2 vowels alongside 5 consonants. It segments into two words: pham, tom. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phamtom.us/

Page Load Overview

4.84s
Total Load Time
121
HTTP Requests
5
Domains
731 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,085 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical63% confidence
Type: spa
Method: ml+structural

All Detected Categories

documentation technical
63%
e-commerce shopping
56%
cryptocurrency blockchain
51%
technology software
51%
healthcare medical
51%

Detected Features

Search
Products
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
16142.251.208.14United States
AS15169GOOGLE
15185.146.173.20Canada
15142.250.185.131Canada
1564.233.184.84United States
AS15169GOOGLE
1523.227.38.74Ottawa, Ontario, Canada
AS13335CLOUDFLARENET
1523.227.38.67Ottawa, Ontario, Canada
AS13335CLOUDFLARENET
15142.250.185.132CanadaUnknown
1534.120.87.25Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
1218--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BE35A6CB9231B07FFD73A4F5E584E949F2884DC1E91A4A76BC71A61342EBAE61351330

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:YCMq3j6/8+sq3j6/8+Kq3j6/8+tq3j6/8+Iq3j6/8+DSrpeQISNt1/SMoiqo6/8P:YCtSrpSMoxjTPPJKky6Vh7s3g00MzW+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1110660:lRMwxzBmYABAALBZkCCTgARAIINAyH/gFUQCOgGwBwWAZOYAIXMQIIwATAAZgwhVUCKACoHJMwsnYIhwzIAAmAhos3BBJIAN

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7e3efff
Perceptual Hash:e69b896499336699
Difference Hash:00000c0c0c051400
Wavelet Hash:3c2424242727273f
Color Hash:#79c6d2

Other Hashes

Crop Resistant:00000c0c0c051400

Scan History

Scan history not available

Unable to load historical scan data