Security Scan Report: intdlb.com

Redirected to:
https://accounts.intuit.com/app/sign-in?redirect_uri=https%3A%2F%2Facc...
Site favicon
Submitted: Jul 28, 2026, 8:16:00 PMCompleted: Jul 28, 2026, 8:17:20 PMpubliccompleted

This website contacted 5 IPs in 2 countries across 26 domains to perform 197 HTTP transactions. The main domain is accounts.intuit.com and was registered 32 years ago.

Submitted URL: https://intdlb.com/e1o95l/?prd.intuit.com/ss/tid=e12167f7bb7d-5ba0fd0f30f6-09f27ffeb2b6-1d990bf200dd

Effective URL:

https://accounts.intuit.com/app/sign-in?redirect_uri=https%3A%2F%2Facc...
Redirected

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Unrelated, unranked domain 'intdlb.com' with an Intuit-spoofed URL path bounces visitors to Intuit's real login — the classic pattern for a phishing kit that hides the harvest page from scanners. Avoid the link; go to Intuit directly.

Risk Factors (4)
Entry domain 'intdlb.com' is unrelated to the brand it routes to and absent from Cisco Umbrella top 1M
Deceptive URL structure places 'prd.intuit.com' and an SSO tracking token in the path of a non-Intuit host
Link pipeline hides destination behaviour behind a cross-domain redirect to a brand login page
Single-source abuse reputation reported against the hosting IP 208.95.112.1
Domain age information unavailable

Details

Page Title

Intuit Accounts - Sign In

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'intdlb.com' is registered without a subdomain. The core label 'intdlb' covers 6 characters holding one vowel versus five consonants. It segments into three words: in, td, lb. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://intdlb.com/e1o95l/?prd.intuit.com/ss/tid=e12167f7bb7d-5ba0fd0f30f6-09f27ffeb2b6-1d990bf200dd

Page Load Overview

8.41s
Total Load Time
3.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:709 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software77% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
77%
corporate business
26%
government public service
25%
social_media
25%
corporate
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
41190.211.254.96London, England, United Kingdom
AS51852Private Layer INC
39142.251.20.95Google · CDNUnited States
AS15169Google LLC
39104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
39151.101.1.155Fastly · CDNUnited States
AS54113Fastly, Inc.
39172.64.147.188Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1975--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19B04FA92A914583A7B1B0BFEB471E906D37875DBC0C0C8C87DDD901D6BDF9AA1332629

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:kcxOX0DkQrnscK+RBtxZEBgsPgxggKgSgUguGT9HnIyl:rxOX0DkQrnLK+RBtjEbATL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:185557:gbByLyERMEmkXBhQAKIJBIAtTUoBOmqBBBCBOMRlCVgiARAgU0RkEDAXhAk5iEB8SyCCQcRGBIBhxEwCYHCTSiEwLAYFGQgB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7dbffff81
Perceptual Hash:b39b8ccccc263399
Difference Hash:20324c0c3208000b
Wavelet Hash:1f1f071f3838bc80
Color Hash:#9740bf

Other Hashes

Crop Resistant:20324c0c3208000b

Scan History

Scan history not available

Unable to load historical scan data