Security Scan Report: glocominv.online

Submitted: Jan 20, 2026, 2:54:57 AMCompleted: Jan 20, 2026, 2:56:07 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 1 HTTP transaction. The main domain is glocominv.online and was registered NaN years ago.

Submitted URL: https://glocominv.online/login.php

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New unranked domain impersonating a bank with a login form – confirmed phishing scam.

Risk Factors
Newly registered domain (<7 days) used for credential collection
Brand impersonation of a financial institution
Password field present on a suspicious, unranked domain
Lack of any reputable ranking or known ownership
Domain age information unavailable

Details

Page Title

Global Commercial &amp; Investment Bank - Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(85%)

Domain Information

The domain 'glocominv.online' uses the modern generic top-level domain (.online) while skipping any subdomain. Its registrable label 'glocominv' stretches across 9 characters holding 3 vowels versus six consonants. Segmentation suggests four words: g, loco, min, v. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://glocominv.online/login.php

Page Load Overview

3.87s
Total Load Time
38
HTTP Requests
3
Domains
254 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:137 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking85% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
85%
corporate business
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14198.54.115.222United States
AS22612NAMECHEAP-NET
12142.250.185.202United States
AS15169GOOGLE
12216.58.212.131United States
AS15169GOOGLE
383--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T190F286534C81264BF52B8E699AD8F90C16E4D207FD330D5DB66CD0148F97FCE14AA35A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:0TagNPIPw6g1Zv8KZe2T3eUB+Ye/IPpIuyEY:0TaC6gD8hUB+Ye/WvyEY

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:35478:A0REAlQzoACAIIAIdECgYiN4IQgMeJQoj4BBoqXiGFBAZIAAUsURUHJBsBBpRNGBlYhRUCqjEQKciIw4JnAAGGkAF2igUMRn

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7ffe7e7ffff
Perceptual Hash:b399cc669999668c
Difference Hash:00000c100c4d000c
Wavelet Hash:f0f0c0c0c0c0fcfc
Color Hash:#8240bf

Other Hashes

Crop Resistant:00000c100c4d000c

Scan History

Scan history not available

Unable to load historical scan data