Security Scan Report: security-mail.fwh.is

Redirected to: https://security-mail.fwh.is/[email protected]&i=1

Submitted: Jan 14, 2026, 9:35:40 AMCompleted: Jan 14, 2026, 9:38:05 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 7 HTTP transactions. The main domain is security-mail.fwh.is and was registered NaN years ago.

Submitted URL: https://security-mail.fwh.is/[email protected]

Effective URL: https://security-mail.fwh.is/[email protected]&i=1Redirected

AI Security Verdict

High Risk

Confidence: 84%

7
Risk Score

Phishing login page impersonating sekure.net; do not enter credentials.

Risk Factors
Credential harvesting form (email + password)
Brand impersonation of sekure.net
Unranked domain with brand claim
Domain age information unavailable

Details

Page Title

portal - sekure.net email login

Scan Type

public

Language

🇺🇸

English

(44% confidence)

Category

unknown

(0%)

Domain Information

The domain 'security-mail.fwh.is' uses the Icelandic country-code top-level domain (.is); it also runs on subdomain 'security-mail'. The registrable portion 'fwh' spans 3 characters containing 0 vowels alongside three consonants. Segmentation suggests 2 words: f, wh. Average segment length settles at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://security-mail.fwh.is/index.php?email=eriq@sekure.net

Page Load Overview

46.46s
Total Load Time
7
HTTP Requests
4
Domains
14 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:44%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:44%
Script Type:Latin
Text Length:219 chars
Detector Agreement:50%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4185.27.134.219United Kingdom
AS34119Wildcard UK Limited
1192.0.77.32San Francisco, California, United States
AS2635AUTOMATTIC
1216.58.209.164United States
AS15169GOOGLE
1104.26.9.174United States
AS13335CLOUDFLARENET
74--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16B7261AB26BB10366513E9797BEB6205333490039509CCA93FACA758DF87F454A727CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:M5FLLBR4RVR482Q9znprMyJYzs0hqCNc8Dy9titzQCeuICGm/EJERg1UFj:Qg0bcnPuICgqn

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17463:KpoA5YESRUxoQATg4UAAHwAmDJSRghEIiuBBBZF8QQfkIGyaSUAaBfBQgYAyDhElhmBJAIBNFxQogWhPjwgA9AA5yAWDAB4A

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7efe7e7ffffff
Perceptual Hash:b333cccc263399cc
Difference Hash:100c084d0c200000
Wavelet Hash:3323032727271b1f
Color Hash:#b56ce0

Other Hashes

Crop Resistant:100c084d0c200000

Scan History

Scan history not available

Unable to load historical scan data