Security Scan Report: e.emailksa.com

Submitted: Oct 23, 2025, 2:08:20 PMCompleted: Oct 23, 2025, 2:10:34 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 2 domains to perform 7 HTTP transactions. The main domain is e.emailksa.com.

Submitted URL: http://e.emailksa.com/rd/9z4zthuvfh5gt49qq5n51k1k4r57no6rm5mdr4v6ie0_rp22sh2s8i6eor0cth62o36cph2bs

AI Security Verdict

High Risk

Confidence: 88%

9
Risk Score

High‑risk phishing site impersonating AT&T settlement

Risk Factors
Brand impersonation of AT&T on an unranked, non‑official domain
Excessive redirects (6) indicating redirection abuse
Domain appears to be newly registered or has unknown age
UNRANKED Cisco Umbrella status combined with brand claims
Domain age information unavailable

Details

Page Title

In Re: AT&T Inc. Customer Data Security Breach Litigation MDL Docket No. 3:24-md-03114-E - United States District Court for the Northern District of Texas

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

other

(40%)

Domain Information

Domain 'e.emailksa.com' uses the commercial generic top-level domain (.com), featuring subdomain 'e'. The core label 'emailksa' covers 8 characters split between 4 vowels and four consonants. Word splitting yields 2 words: email, ksa. Median word length comes out to 4 characters. 'email' most strongly signals Sinhala. It also appears in Bosnian and Croatian contexts.

Screenshot

Security scan screenshot of http://e.emailksa.com/rd/9z4zthuvfh5gt49qq5n51k1k4r57no6rm5mdr4v6ie0_rp22sh2s8i6eor0cth62o36cph2bs

Page Load Overview

127.18s
Total Load Time
7
HTTP Requests
2
Domains
0 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:11,194 chars
Detector Agreement:100%

Website Classification

Primary Category

other40% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

other
40%
malicious
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
452.11.52.55Boardman, Oregon, United States
AS16509AMAZON-02
1172.64.150.165United States
AS13335CLOUDFLARENET
1104.18.37.91United States
AS13335CLOUDFLARENET
144.233.215.102Boardman, Oregon, United States
AS16509AMAZON-02
74--

Detected Technologies1

Content Similarity HashesFor malware variant detection

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data