Security Scan Report: boxlight.glbth.com

Submitted: Dec 21, 2025, 8:56:21 PMCompleted: Dec 21, 2025, 9:00:29 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 1 country across 4 domains to perform 36 HTTP transactions. The main domain is boxlight.glbth.com and was registered NaN years ago.

Submitted URL: https://boxlight.glbth.com

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Site impersonates Google/Microsoft on an unrelated domain – high‑risk phishing.

Risk Factors
Brand impersonation (Google and Microsoft) on an unrelated domain
Displayed credential fields without a legitimate form
Unranked domain presenting well‑known brand logos
Domain age information unavailable

Details

Page Title

Boxlight NDMS

Scan Type

public

Language

🇻🇳

VI

(36% confidence)

Category

healthcare medical

(73%)

Domain Information

The domain 'boxlight.glbth.com' uses the commercial generic top-level domain (.com), featuring subdomain 'boxlight'. The second-level label 'glbth' is 5 characters long containing zero vowels alongside 5 consonants. Tokenizing the label suggests 2 words: glbt, h. The median word length lands at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://boxlight.glbth.com

Page Load Overview

245.83s
Total Load Time
36
HTTP Requests
4
Domains
0 KB
Total Size

Language Analysis

Primary Language

🇻🇳Vietnamese
Code: vi
Confidence:36%
Script:Unknown
Direction:ltr

Detection Details

Language Code:vi
Detection Confidence:36%
Script Type:Unknown
Text Length:1,639 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical73% confidence
Type: static
Method: ml+structural

All Detected Categories

healthcare medical
73%
education learning
61%
documentation technical
58%
adult content
56%
technology software
52%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6216.58.210.131United States
AS15169GOOGLE
513.33.235.93New York, New York, United States
AS16509AMAZON-02
513.33.235.126New York, New York, United States
AS16509AMAZON-02
5142.251.38.78United States
AS15169GOOGLE
513.33.235.14New York, New York, United States
AS16509AMAZON-02
513.33.235.10New York, New York, United States
AS16509AMAZON-02
5172.65.208.22United States
AS13335CLOUDFLARENET
367--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T119D385EADC80C27D2A0FDA6847DEE6297319BDC1CE05D6C6F208D29416C3BF195AD742

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:BxP6RFJU/zLg+Y7vypuZkzRlzxdzTNR4lmk:jPOFJUng+Y7vypuZkzRlzxdzTNR4lmk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:138020:ABiJWSArAMlREKhJEoCaIMAGUTBgzpEwmbgCAz3KIhJUFBikChMQSBiIYACJERCLCScAIsChYxEYkrNBFCCCMiFSEhZCY0Eg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffbff8f0f0f0
Perceptual Hash:cdb24954ab54d46b
Difference Hash:004302646184c2c3
Wavelet Hash:fef8f890f0f0f020
Color Hash:#72e06c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data