Security Scan Report: secure-sso-itrustcapital-auuth.webflow.io

Submitted: Nov 16, 2025, 4:56:06 AMCompleted: Nov 16, 2025, 4:57:05 AMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 0 countries across 3 domains to perform 8 HTTP transactions. The main domain is secure-sso-itrustcapital-auuth.webflow.io.

Submitted URL: https://secure-sso-itrustcapital-auuth.webflow.io/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing page impersonating iTrustCapital on a suspicious domain

Risk Factors
Brand impersonation on an unranked, non‑official domain
Login page title without a visible form (possible hidden credential harvest)
Unusual subdomain pattern (secure‑sso‑itrustcapital‑auuth.webflow.io)
Domain likely newly created (no age data) combined with brand spoofing
Domain age information unavailable

Details

Page Title

Log in | iTrustCapital

Scan Type

public

Language

🇵🇭

TL

(32% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'secure-sso-itrustcapital-auuth.webflow.io' on the British Indian Ocean Territory country-code top-level domain (.io); it also runs on subdomain 'secure-sso-itrustcapital-auuth'. Count 7 characters in 'webflow' holding 2 vowels versus five consonants. Breaking it apart gives two words: web, flow. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://secure-sso-itrustcapital-auuth.webflow.io/

Page Load Overview

18.51s
Total Load Time
8
HTTP Requests
3
Domains
2.3 MB
Total Size

Language Analysis

Primary Language

🇵🇭TL
Code: tl
Confidence:32%
Script:Unknown
Direction:ltr

Detection Details

Language Code:tl
Detection Confidence:32%
Script Type:Unknown
Text Length:22 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
813.226.247.18UnknownUnknown
0172.64.151.8UnknownUnknown
0104.18.161.117UnknownUnknown
0104.18.160.117UnknownUnknown
013.226.247.220UnknownUnknown
013.226.247.129UnknownUnknown
013.226.247.67UnknownUnknown
02606:4700:440c::ac40:9708UnknownUnknown
02a06:98c1:3100::6812:24f8UnknownUnknown
02606:4700::6812:a075UnknownUnknown
812--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T112510147A9D5C60FB3018AE4FAD6248CC9CA726ECED2C90168E0D9F9B3C4CC5A85559E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:GZ9tPGnLgnC4iGba2oyD+u/xiV7BRvt171fdsUbzEuON1HAE:G9PGnLTi/5iVVRvt1hfdsUXBON1r

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2937:EAAACIACCFAACACBACKAAZAAAggQAA0AAEQAAQEAAgQkgAAAAAIAgABAAwMoBIAAwACAkIJAACAAABAAARAAABICAgBEAAkg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2f1f7f7b78000000
Perceptual Hash:c0813e3fc1e3bad8
Difference Hash:eef7d5c5d5b7cdb3
Wavelet Hash:7f1f7f7f79000001
Color Hash:#3a5c78

Scan History

Scan history not available

Unable to load historical scan data