Security Scan Report: bysa1.byside.com

Redirected to:
https://sa1.byside.com/v3/login.php?redirect=/v3/index.php
Site favicon
Submitted: Jul 31, 2026, 12:17:37 PMCompleted: Jul 31, 2026, 12:18:46 PMpubliccompleted

This website contacted 3 IPs in 2 countries across 5 domains to perform 35 HTTP transactions. The main domain is sa1.byside.com and was registered 23 years ago.

Submitted URL: https://bysa1.byside.com

Effective URL:

https://sa1.byside.com/v3/login.php?redirect=/v3/index.php
Redirected

The Cisco Umbrella rank of the primary domain is #199,029 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 80%

3
Risk Score

Site impersonates CoreMedia and harvests credentials; treat as high‑risk phishing.

Risk Factors (3)
Brand impersonation (CoreMedia) on unrelated domain
Credential collection form
Low Cisco Umbrella ranking for a claimed brand
Safety Factors (4)
Domain is 23 years old (well‑established)
No JavaScript malware or YARA matches
No network IDS alerts or credential exfiltration detected
Top-ranked domain (Cisco Umbrella #199,029, 8436 days old) with no strong malicious indicators — a login form on a household-name site is normal; risk clamped from 7 to 3
Domain age information unavailable

Details

Page Title

CoreMedia Engagement Studio

Scan Type

public

Domain Name Analysis

The domain name 'bysa1.byside.com' uses the commercial generic top-level domain (.com), featuring subdomain 'bysa1'. The second-level label 'byside' is 6 characters long containing 2 vowels alongside four consonants. Breaking it apart gives two words: by, side. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bysa1.byside.com

Page Load Overview

2.40s
Total Load Time
790 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:59%
Script:Latin
Direction:ltr

Detection Details

Text Length:258 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software82% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
82%
corporate business
77%
social media network
44%
news media journalism
33%
cryptocurrency blockchain
33%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13142.251.14.95Google · CDNUnited States
AS15169Google LLC
1118.96.192.117Aws · CLOUDZaragoza, Aragon, Spain
AS16509Amazon.com, Inc.
1118.96.192.116Aws · CLOUDZaragoza, Aragon, Spain
AS16509Amazon.com, Inc.
353--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17982D73288597D2675234AD8A276B90EE493807FCA46CCCE77EC03912FDDCD8681669D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:lHgJ4ppotcI+FQfQECEIuE7t8Cq6X6Nn1TiXv2r9+6zmtM+FFbFc/RVe/GVjOhQK:WJ4EtcI+FQfQ9Jumt8Cqp1r9bk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:17633:KxM3OmkQhgzxxHIUnEtLLoaFADmBNZiwZBxJChAAFcAgWiDAYIarIkwCShgapG4QDCgEBAAQANYnMnQSICwJMAlkkCiVgk0I

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data