Security Scan Report: t.co

Redirected to: blob:https://forsalebyowner6.com/ec0ed39f-2731-457a-98f1-498e18c83707

Submitted: Oct 9, 2025, 6:26:35 PMCompleted: Oct 9, 2025, 6:27:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 2 countries across 6 domains to perform 13 HTTP transactions. The main domain is .

Submitted URL: https://t.co/nDJJKGMlyJ

Effective URL: blob:https://forsalebyowner6.com/ec0ed39f-2731-457a-98f1-498e18c83707Redirected

The Cisco Umbrella rank of the primary domain is #1,020 of the top 1 million websitesTop 10K Site

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Confirmed phishing site impersonating CapitalOne; do not enter any credentials.

Risk Factors
Brand impersonation on a newly registered, low‑reputation domain
Blob URL usage – extremely strong phishing indicator
Disguised password fields to trick users
Unicode characters used to evade detection
High number of login forms collecting credentials
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(79%)

Domain Information

The domain name 't.co' uses the Colombian country-code top-level domain (.co). The second-level label 't' is 1 characters long with zero vowels and one consonant. Word splitting yields one word: t. Median word length comes out to one character. The linguistic tilt is Chinese (Zhuyin) for 't'. It also appears in Catalan and Albanian contexts. Net impression: Chinese (Zhuyin) phrase with single-word simplicity.

Screenshot

Security scan screenshot of https://t.co/nDJJKGMlyJ

Page Load Overview

41.52s
Total Load Time
13
HTTP Requests
6
Domains
47 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,870 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking79% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
79%
documentation technical
53%
adult content
52%
corporate business
50%
technology software
44%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1335.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
0216.250.119.246United States
AS8560IONOS SE
0162.159.140.229United States
AS13335CLOUDFLARENET
0151.101.194.137San Francisco, California, United States
AS54113FASTLY
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
067.20.76.247United States
AS46606UNIFIEDLAYER-AS-1
02a04:4e42:600::649GermanyUnknown
02a04:4e42:400::649GermanyUnknown
0151.101.66.137GermanyUnknown
0151.101.130.137GermanyUnknown
1315--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF63433561E301BAA8B389D857EB2B463E849887D0C9D12477AC9BD84F838D5D47D3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:0Ql0WSjLNMFv9vteVCrXWtcLRlyA7q86mLTlyA7KWtm:0QlfSjLNAVVe5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:67514:B4EYLSDgCF4IQSqbAdUAQMAGQCWpRFWaARgypsRkweItYIFAI1kZABACalAogJSsyFOAAOZIdodCM1JAyiG4AMJVIgOqEIKA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fa5bde7c3ffcfff
Perceptual Hash:b38f8c27239d89b1
Difference Hash:e869704c4d2a2c00
Wavelet Hash:7f343c2c0424df0d
Color Hash:#2d8386

Other Hashes

Crop Resistant:e869704c4d2a2c00

Scan History

Scan history not available

Unable to load historical scan data