Security Scan Report: phh.app.box.com

Redirected to:
https://phh.account.box.com/login
Site favicon
Submitted: Jun 21, 2026, 5:41:43 AMCompleted: Jun 21, 2026, 5:42:52 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 4 domains to perform 2 HTTP transactions. The main domain is phh.account.box.com and was registered NaN years ago.

Submitted URL: https://phh.app.box.com

Effective URL: https://phh.account.box.com/loginRedirected

The Cisco Umbrella rank of the primary domain is #2,863 of the top 1 million websitesTop 10K Site

AI Security Verdict

Safe Website

Confidence: 95%

0
Risk Score

The site appears to be a legitimate Box login page with no malicious indicators.

Safety Factors
Reputable brand (Box) on its own domain
Established domain age and reputation
Cross‑origin form is a legitimate SSO flow
No malicious network or IDS alerts
JS obfuscation attributed to standard minification
Domain age information unavailable

Details

Page Title

Box | Login

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'phh.app.box.com' uses the commercial generic top-level domain (.com), featuring subdomain 'phh.app'. The second-level label 'box' is 3 characters long with one vowel and two consonants. Splitting it apart reveals 1 word: box. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://phh.app.box.com

Page Load Overview

2.12s
Total Load Time
30
HTTP Requests
4
Domains
66 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:716 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10104.16.145.15United States
AS13335Cloudflare, Inc.
1074.112.186.157United States
AS396982Google LLC
1023.52.181.12Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
303--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F9A2966298C435A61102D3B8FA392FB4E95F125BDB40EE28F3BD151ABFD1F92465301E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:JYh6WEK4wn+hTckkAVApkZkraBDoM3+vGDRy7qKM9CeDbYdmg+fosTwJj8S5VF8a:JYQWELphTckkAVApkZkraBD73+vGDRyx

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:22223:OIiAcQpGAAgUsBZACLAjilkTUpBgMCEhICE4pAcIEoQhzgHUI0pTMEICCwUeAaEqEwUUAKwgKXGSQeEUhKBgIEAkAJLiVRSb

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fe7e7e7e7e7e7ff
Perceptual Hash:b352ccc86672d9cc
Difference Hash:800c084d0c0c0c14
Wavelet Hash:74e7e7e724242000
Color Hash:#ae2dd2

Other Hashes

Crop Resistant:800c084d0c0c0c14

Scan History

Scan history not available

Unable to load historical scan data