Security Scan Report: phptc.org

Submitted: Oct 11, 2025, 7:15:59 AMCompleted: Oct 11, 2025, 7:16:50 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 2 domains to perform 8 HTTP transactions. The main domain is phptc.org.

Submitted URL: https://phptc.org/de/sparkasse/auth/plz.php

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

Site impersonates Sparkasse on a suspicious, likely new domain and collects personal data – high risk phishing.

Risk Factors
Impersonates Sparkasse bank on a non‑official domain
Domain not in Cisco Umbrella top 1M (unranked) and likely new
Collects personal data via a form on a suspicious site
Domain age information unavailable

Details

Page Title

Ihre Sparkasse vor Ort

Scan Type

public

Language

🇩🇪

German

(50% confidence)

Category

finance banking

(72%)

Domain Information

Within the non-profit oriented generic top-level domain (.org), 'phptc.org' is registered. The second-level label 'phptc' is 5 characters long containing 0 vowels alongside 5 consonants. Breaking it apart gives 2 words: php, tc. The median word length lands at 2.5 characters. 'php' is most common in Vietnamese usage. You may catch it in Sinhala and Catalan as well. Net impression: Vietnamese phrase.

Screenshot

Security scan screenshot of https://phptc.org/de/sparkasse/auth/plz.php

Page Load Overview

5.62s
Total Load Time
8
HTTP Requests
2
Domains
44 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:de
Text Length:421 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking72% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
72%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4184.168.106.27Singapore, Singapore
AS26496AS-26496-GO-DADDY-COM-LLC
2185.15.59.240United States
AS14907WIKIMEDIA
22a02:ec80:300:ed1a::2:bUnited States
AS14907WIKIMEDIA
83--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10441DD1180F790B7417281D1A9AA0F1B2DC1A77BE6DB054036FE47D81FDDD82E807524

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:bCLSwrTdpuLGt2Kj3+wnikAugPhT7gyCvATCJLWFznVgF0Hj:oSAT/uLGtPj3Mk4P97TCvt5WtVV

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2014:IAAFCAgADAOIAAAEIAAAAFAQAAAAAAIAAAhBAAACACgAQAAEAkAAAQkAAARQAgIAAABABECAAEAACBAAARgGEAEACEAAAACg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data