Security Scan Report: www.grvtdocusignsetup.icu

Submitted: Aug 15, 2026, 12:45:40 AMCompleted: Aug 15, 2026, 12:49:11 AMpubliccompleted

Summary

This website contacted 4 IPs in 1 country across 4 domains to perform 2 HTTP transactions. The main domain is grvtdocusignsetup.icu and was registered NaN years ago.

Submitted URL: https://www.grvtdocusignsetup.icu/

AI Security Verdict

Low Risk

Confidence: 85%

3
Risk Score

The site impersonates Docusign on a brand‑new, unranked domain, indicating a high‑risk phishing page.

Risk Factors
Very new domain (<30 days)
Unranked / low reputation
Impersonation of a well‑known brand (Docusign) on a non‑official domain
Safety Factors
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 7 to 3
Domain age information unavailable

Details

Page Title

Docusign - Download to Review & Sign Document

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

download file sharing

(87%)

Domain Information

Domain 'www.grvtdocusignsetup.icu' uses the .icu top-level domain, featuring subdomain 'www'. The registrable portion 'grvtdocusignsetup' spans 17 characters with 5 vowels and twelve consonants. It segments into 6 words: gr, vt, do, cu, sign, setup. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.grvtdocusignsetup.icu/

Page Load Overview

6.39s
Total Load Time
9
HTTP Requests
6
Domains
225 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:702 chars
Detector Agreement:100%

Website Classification

Primary Category

download file sharing87% confidence
Type: static
Method: ml+structural

All Detected Categories

download file sharing
87%
technology software
76%
documentation technical
70%
finance banking
58%
corporate business
55%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3142.251.13.95Google · CDNUnited States
AS15169Google LLC
218.173.205.34Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
2188.114.96.3Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
213.33.187.16Cloudfront · CDNNew York, New York, United States
AS16509Amazon.com, Inc.
94--

Page Statistics

9
Requests
6
Unique Domains
233.9 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CE82C59F46F302226C0790686FBA2A013965D007D458E8B93FDD5398CF8E8D4ADA77DD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:oFiGf3kiM6qswNwnOF0R1Sc9rr8CvW2Y9eON2CtNa0p3pQA2xyGcRjRfKRlmCZli:QonjM5Xuwvja4MAKBA7xs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18485:YZGUAbgVJBWAkVgAIMAUAD66BgAAyFEmRAAtVlfQsmASEJ9VhoUA+QoYoFg4I7hBqQAgJEE5IMMmIUmgL0AGIXvhBECAKQA8

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fcf83d19193ffff
Perceptual Hash:ac21939e67e72c98
Difference Hash:c6383607373700e2
Wavelet Hash:7f8f83818191ff0c
Color Hash:#87c5a1

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data