Security Scan Report: metropcsunlocks.com

Site favicon
Submitted: Sep 28, 2026, 11:13:44 PMCompleted: Sep 28, 2026, 11:17:23 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

4
Risk Score

Aged domain serving a thin, ad-laden 'Under construction' page with a MetroPCS-branded name. No forms, malware, or phishing content found; parking-tag and circular redirect are weak signals only.

Risk Factors (3)
Circular redirect loop on an otherwise static page
Domain name embeds the MetroPCS trademark while presenting a third-party unlock/used-phone service rather than an official brand site
Thin, ad-driven under-construction page with no original content
Safety Factors (4)
Domain registered and operating for over 4 years
Zero forms — no password, credential, or payment fields to harvest
No JavaScript malware, no network IDS alerts, no credential exfiltration
No brand-impersonation login page claiming to be an official MetroPCS site
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

The domain name 'metropcsunlocks.com' uses the commercial generic top-level domain (.com) without a subdomain. The second-level label 'metropcsunlocks' is 15 characters long with four vowels and 11 consonants. Segmentation suggests three words: metro, pcs, unlocks. The median word length lands at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://metropcsunlocks.com

Page Load Overview

26.96s
Total Load Time
319 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:72%
Script:Latin
Direction:ltr

Detection Details

Text Length:44 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software74% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
74%
documentation technical
56%
government public service
54%
blog personal website
53%
entertainment media
46%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11208.91.197.27British Virgin Islands
AS40034Confluence Networks Inc
1212.147.229.201Finland
AS202053UpCloud Ltd
137.19.194.80Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
185.9.205.94Frankfurt am Main, Hesse, Germany
AS202053UpCloud Ltd
179.127.211.89Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
194.237.27.56Finland
AS202053UpCloud Ltd
1150.171.110.49Azure · CLOUDUnited States
AS8075Microsoft Corporation
1150.171.110.54Azure · CLOUDUnited States
AS8075Microsoft Corporation
2414--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B9E2B51446F1481145A33035EEBFAA85B7650E23744CEC08BD8CA680EF9E9B74DB67F8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:+ZBsjBjrAyhtbgt4MiIO/5/9SLBpjk0LWRpo9Vcpo9V9Q3GG:aMM/jkOWRpozcpoz9M

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:32856:AKYVAxEwA4BURJIRhjeAYIH5DcSAAGBb8wwSaniAS4gOHIEYXJT0QgykIQQUQTMABSwmCMhARAJAAgYhQAAAoIAkB45vQsoH

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0042c300000000ff
Perceptual Hash:b43497169616be36
Difference Hash:c4969686a6b2b63b
Wavelet Hash:26e7e7d3521000ff
Color Hash:#931f4e

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data