Security Scan Report: mal7.net

Submitted: Aug 17, 2026, 12:31:05 PMCompleted: Aug 17, 2026, 12:49:42 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 94%

10
Risk Score

The site impersonates Google login on a brand‑new, unranked domain and collects credentials – confirmed phishing scam.

Risk Factors
Very new domain
Unranked / low reputation
Brand impersonation of Google
Credential collection form on non‑official domain
Title‑domain mismatch
Domain age information unavailable

Details

Page Title

Sign in - Google Accountssecondary capture

Scan Type

public

Domain Name Analysis

The domain name 'mal7.net' uses the network infrastructure generic top-level domain (.net) with no subdomain. The second-level label 'mal7' is 4 characters long split between one vowel and 2 consonants, along with one digit. Breaking it apart gives 2 words: mal, 7. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mal7.net/auth/google

Page Load Overview

1.09s
Total Load Time
77 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:978 chars
Detector Agreement:100%

Website Classification

Primary Category

malicious51% confidence
Type: spa
Method: ml+structural+ocr_tiebreaker

All Detected Categories

malicious
51%
suspicious phishing
34%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3192.178.183.94Google · CDNUnited States
AS15169Google LLC
1142.251.127.84Google · CDNUnited States
AS15169Google LLC
192.113.23.24Frankfurt am Main, Hesse, Germany
AS47583Hostinger International Limited
1142.251.13.94Google · CDNUnited States
AS15169Google LLC
64--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12F45A4CF9230A03FF973A4F6E990ED4EF2884DD1E64A4676BC71A91342EE5A61751330

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:UCnq3j6/8+Oq3j6/8+Iq3j6/8+tq3j6/8+eq3j6/8+BI3tQISNt1/DoUoqo6/8+m:UCWI3SoUrjTbWJlRHYnPEAJ2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1256349:N1axQDUKFiCSSCQR4TY8RABNF0rMEWDAcRmEoErSCqAFFWWOICgFE0YQEQxAFwBG4QUFhFDhUS2sd6RqDCYApBVIAkJsEAyE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00003c3e78380000
Perceptual Hash:ce96316982b6c9cb
Difference Hash:0000602443630400
Wavelet Hash:0303ffdf7a3e0000
Color Hash:#60ac53

Other Hashes

Crop Resistant:0000602443630400

Scan History

Scan history not available

Unable to load historical scan data