Security Scan Report: pellacorp.lightning.force.com

Redirected to:
https://portal.mypella.com/app/salesforce/exk3t44tofLeA9jZg5d7/sso/sam...
Site favicon
Submitted: May 11, 2026, 8:19:39 AMCompleted: May 11, 2026, 8:21:41 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 7 HTTP transactions. The main domain is portal.mypella.com and was registered NaN years ago.

Submitted URL: https://pellacorp.lightning.force.com

Effective URL: https://portal.mypella.com/app/salesforce/exk3t44tofLeA9jZg5d7/sso/samlRedirected

The Cisco Umbrella rank of the primary domain is #1,491 of the top 1 million websitesTop 10K Site

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

Site appears legitimate but critical IDS alerts and heavy JS obfuscation suggest possible malicious activity; proceed cautiously.

Risk Factors
Critical IDS alerts indicating possible malware data exfiltration
Highly obfuscated JavaScript code
Safety Factors
Long‑standing domain (35+ years) with reputable registration
High Cisco Umbrella ranking (top 10K)
Absence of credential or payment collection forms
No known Indicators of Compromise matched
Domain age information unavailable

Details

Page Title

Pella - Access Forbidden

Scan Type

public

Language

🇺🇸

English

(49% confidence)

Category

technology software

(71%)

Domain Information

The domain 'pellacorp.lightning.force.com' uses the commercial generic top-level domain (.com), featuring subdomain 'pellacorp.lightning'. Count 5 characters in 'force' holding two vowels versus 3 consonants. Tokenizing the label suggests 1 word: force. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pellacorp.lightning.force.com

Page Load Overview

3.84s
Total Load Time
20
HTTP Requests
5
Domains
750 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:49%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:49%
Script Type:Latin
Text Length:223 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software71% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
71%
documentation technical
64%
adult content
46%
healthcare medical
42%
phishing scam
34%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
535.71.149.114United States
AS16509Amazon.com, Inc.
535.158.127.51Frankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
53.174.46.74United States
AS16509Amazon.com, Inc.
535.158.127.53Frankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
204--

Detected Technologies1

40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19331E22610E70437105350A4A8AA7B0A7EA8A817C20ACE507EAC57E55FD5D96C86329C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:w3Rk585/lbLh/xmFAYUJ7c5+CyU/TjBTuVD:+P/JLed+CyWjBKVD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1725:EgIAAAAACAAAAAEDAAggCQAQAAAEACIAAAgAABAAAAQYAAAACAIAAAAAAABgAAAAAEAAEAAAAOYEAACAABAAABASBgQQQAIA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7ffffffffff
Perceptual Hash:e6663999998c6666
Difference Hash:1028282800000000
Wavelet Hash:dfc7e7ff18000000
Color Hash:#40bf73

Other Hashes

Crop Resistant:1028282800000000

Scan History

Scan history not available

Unable to load historical scan data