Security Scan Report: email2.terminusplatform.com

Redirected to: https://app.demandscienceplatform.com/login?p=email&skey=y52qkbw4xve

Site favicon
Submitted: Dec 6, 2025, 5:36:53 PMCompleted: Dec 6, 2025, 5:37:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 56 IPs in 3 countries across 22 domains to perform 92 HTTP transactions. The main domain is app.demandscienceplatform.com and was registered NaN years ago.

Submitted URL: https://email2.terminusplatform.com/

Effective URL: https://app.demandscienceplatform.com/login?p=email&skey=y52qkbw4xveRedirected

The Cisco Umbrella rank of the primary domain is #534,166 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Likely phishing login page impersonating DemandScience

Risk Factors
Brand impersonation on low‑ranking domain
Recent domain registration (<12 months)
Login form collecting credentials on untrusted domain
Domain age information unavailable

Details

Page Title

DemandScience

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'email2.terminusplatform.com' uses the commercial generic top-level domain (.com) with subdomain 'email2'. Its registrable label 'terminusplatform' stretches across 16 characters containing five vowels alongside 11 consonants. Word splitting yields 2 words: terminus, platform. The median word length lands at 8 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://email2.terminusplatform.com/

Page Load Overview

1.86s
Total Load Time
92
HTTP Requests
22
Domains
2.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:416 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3018.66.112.23United States
1254.159.182.242Ashburn, Virginia, United States
AS14618AMAZON-AES
8142.250.186.163United States
AS15169GOOGLE
8216.58.206.42United States
AS15169GOOGLE
535.184.35.160Council Bluffs, Iowa, United States
AS396982GOOGLE-CLOUD-PLATFORM
5146.75.123.9Frankfurt am Main, Hesse, Germany
AS54113FASTLY
435.201.112.186Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
334.8.38.243Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
3142.250.74.206United States
AS15169GOOGLE
235.190.35.221United States
AS396982GOOGLE-CLOUD-PLATFORM
9256--

Detected Technologies1

40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18DA32AB0AD015128FE5FCBFF91C9BE112A0998D2DB47C3D6F20C9E5CA7CA6A6565C310

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:imEt5aUJ1QiqDloAxPm6Ld/Qqbzx8m1YCVe8BZxqmfmUCJjJ+TwFLrz77MDNpMRQ:8z+TkYi7tXKRX8hDXlH5VoHuxzEx

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:106023:UgOAONYKEhCJIgFCEQYcRcBLG7VDEIFuYRM2LqYa1uNSAKBkgA0hoIABADF7ohxKrIRCggwYZ6AGA3HIFSRhEkUDxqKOEIoA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c0c0c0c0c0c0c0c0
Perceptual Hash:f093e02f0ff0f00f
Difference Hash:9599999810909191
Wavelet Hash:e5e0eceee0e0e0e4
Color Hash:#1f9344

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data