Security Scan Report: t.co

Redirected to: blob:https://stevenpaulzehler.com/a1548a5c-f2fa-4276-aa2d-aad7c606b9d2

Site favicon
Submitted: Dec 6, 2025, 6:02:04 PMCompleted: Dec 6, 2025, 6:02:57 PMpubliccompleted
Loading additional data...

Summary

This website contacted 26 IPs in 3 countries across 10 domains to perform 15 HTTP transactions. The main domain is .

Submitted URL: https://t.co/V7u3Vp52ch

Effective URL: blob:https://stevenpaulzehler.com/a1548a5c-f2fa-4276-aa2d-aad7c606b9d2Redirected

The Cisco Umbrella rank of the primary domain is #1,176 of the top 1 million websitesTop 10K Site

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

Phishing page impersonating American Express; high risk – avoid interaction.

Risk Factors
Brand impersonation on non‑official domain
URL manipulation (blob URL) indicating spoofed address bar
Disguised password fields (type='text' with password placeholder)
Unicode evasion techniques in form fields
Short URL redirect (t.co) to suspicious domain
Domain age information unavailable

Details

Page Title

Log in to My Account | American Express US

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(69%)

Domain Information

The domain 't.co' uses the Colombian country-code top-level domain (.co). The core label 't' covers 1 characters with 0 vowels and one consonant. Breaking it apart gives one word: t. The median word length lands at one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://t.co/V7u3Vp52ch

Page Load Overview

1.22s
Total Load Time
15
HTTP Requests
10
Domains
196 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,997 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking69% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
69%
government public service
69%
education learning
52%
corporate business
37%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3151.101.130.137San Francisco, California, United States
AS54113FASTLY
223.36.235.165Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
235.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
1162.159.140.229United States
AS13335CLOUDFLARENET
1104.17.25.14United States
AS13335CLOUDFLARENET
123.197.140.100Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
123.227.39.200Ottawa, Ontario, Canada
AS13335CLOUDFLARENET
1142.250.184.234United States
AS15169GOOGLE
123.45.100.32Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
170.40.207.216United States
AS46606UNIFIEDLAYER-AS-1
1526--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C0042A1715A655251C6F2CEA4FE73E4D7A94F483C802C650F4ED8ACCAF97B81899A3CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:fdTO/YGu3iIob0mTbYkIOHLS0nRV+U1Y2AzEbtVcDrM3ZLhNS2kEO5Qw7qUre6iq:fdTOlGA0mTlLSiRV+cY3wbTuMQ5mwW7U

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:186562:JEohAkIE64YEsVSTHwITAxAGggp4VgdxFBKJAZW7CEcgC+ECCwhQqBiAOAgYCK2tFFEBGCYEBFiQwCSEKJYBAWKkNr3kJiQi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fd32324648baffff
Perceptual Hash:e464cb9b9b92c664
Difference Hash:596666949a661515
Wavelet Hash:bd3030300838ffff
Color Hash:#1f9344

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data