Security Scan Report: www.timestesol.com

Submitted: Oct 15, 2025, 4:45:52 PMCompleted: Oct 15, 2025, 4:46:30 PMpubliccompleted
Loading additional data...

Summary

This website contacted 35 IPs in 4 countries across 10 domains to perform 22 HTTP transactions. The main domain is timestesol.com and was registered NaN years ago.

Submitted URL: https://www.timestesol.com/wl/editor/uploaded/img/cgi/admin/find/wetiransfer.html

AI Security Verdict

High Risk

Confidence: 90%

7
Risk Score

Phishing site impersonating WeTransfer to harvest credentials.

Risk Factors
Brand impersonation on unrelated domain
Login form collecting credentials
Unranked domain presenting a major brand
Domain age information unavailable

Details

Page Title

WeTransfer

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

download file sharing

(71%)

Domain Information

The domain name 'www.timestesol.com' uses the commercial generic top-level domain (.com) with subdomain 'www'. Its registrable label 'timestesol' stretches across 10 characters holding four vowels versus 6 consonants. Segmentation suggests 2 words: times, tesol. The median word length lands at five characters. 'times' most strongly signals Italian. It also appears in Portuguese and Galician contexts.

Screenshot

Security scan screenshot of https://www.timestesol.com/wl/editor/uploaded/img/cgi/admin/find/wetiransfer.html

Page Load Overview

22.57s
Total Load Time
22
HTTP Requests
10
Domains
77 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:en
Text Length:685 chars
Detector Agreement:100%

Website Classification

Primary Category

download file sharing71% confidence
Type: webapp
Method: ml+structural

All Detected Categories

download file sharing
71%
documentation technical
32%
corporate business
31%
technology software
26%
corporate
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
22115.68.122.58South Korea
AS38700SMILESERV
0151.101.2.137San Francisco, California, United States
AS54113FASTLY
0104.18.10.207United States
AS13335CLOUDFLARENET
052.222.136.2United States
AS16509AMAZON-02
0104.17.25.14United States
AS13335CLOUDFLARENET
0104.18.11.207United States
AS13335CLOUDFLARENET
0104.18.0.22United States
AS13335CLOUDFLARENET
063.250.43.128United States
AS22612NAMECHEAP-NET
045.43.142.6United Kingdom
AS16276OVH SAS
0142.250.186.106United States
AS15169GOOGLE
2235--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18A839EB31A10FC8967474EE9E1D03B145CAEE55FE70B4084BFF905E5A3E6E91ED28428

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:2nyel0eaJq5f44erUPhmegbe7/lyeaJq5f44erUPhmegbeU/la1arAy8Vf:2nyelRUUJ5gyLlnUUJ5gyIla+z8Vf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:81061:ACoEWRJrNqFABAE6giAKDkQDWxQhajA8hIHigMQ4gVIheEwA7wMl4Cpo4xkskkCAMLURhS4kVABUC7Yk1kQDi0ACdAxVBRyB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1f0f87c7cf07270f
Perceptual Hash:b3388dcdcc3338cc
Difference Hash:febe9d8dac88cafc
Wavelet Hash:1f0f0707cf070f0f
Color Hash:#6cc9e0

Scan History

Scan history not available

Unable to load historical scan data