Security Scan Report: t.co

Redirected to:
blob:https://pub-92138588a45f4b1a96c3d30c2097768d.r2.dev/b254f294-ace3...
Site favicon
Submitted: Aug 6, 2026, 5:24:39 PMCompleted: Aug 6, 2026, 5:25:22 PMpubliccompleted

This website contacted 7 IPs in 4 countries across 7 domains to perform 7 HTTP transactions. The main domain is and was registered 16 years ago.

Submitted URL: https://t.co/kJFHLn4Dv3

Effective URL:

blob:https://pub-92138588a45f4b1a96c3d30c2097768d.r2.dev/b254f294-ace3...
Redirected

The Cisco Umbrella rank of the primary domain is #1,176 of the top 1 million websitesTop 10K Site

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

The page is a high‑risk credential phishing site impersonating American Express, using a short‑link and blob URL to harvest login details.

Risk Factors
Credential harvesting form on non‑official domain
Brand impersonation of American Express
Use of blob: URL scheme to dynamically generate the login page
Domain age information unavailable

Details

Page Title

https://www.sound-heart.nl/wp-admin/thursmx.html

Scan Type

public

Domain Name Analysis

Domain 't.co' uses the Colombian country-code top-level domain (.co). Its registrable label 't' stretches across 1 characters with zero vowels and 1 consonant. It segments into one word: t. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://t.co/kJFHLn4Dv3

Page Load Overview

1.22s
Total Load Time
381 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:4,114 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content41% confidence
Type: webapp
Method: ml+structural

All Detected Categories

adult content
41%
government public service
36%
finance banking
26%
social_media
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1172.66.0.227Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
123.222.81.192Hamburg, Free and Hanseatic City of Hamburg, Germany
AS16625Akamai Technologies, Inc.
123.227.39.200Ottawa, Ontario, Canada
AS13335Cloudflare, Inc.
123.197.143.248Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
1104.18.54.45Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1185.41.127.15Netherlands
AS51088A2b Ip B.v.
123.52.181.182Frankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
77--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BF443B23666A5159641E3CAB4BD72E8E7A04F093C803C744F0ED49DCAF9F780A9997DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:B4xmu8fbf/vug0wbLj26HgTkxmu8fbf/vug0wbLj2fWm5biWr:nf/tjgTxf/tj45Lr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:274352:AAYQgkwiBsQhIBKJEBIQgEBkRAUCkl6SMsCQhdRwAy3EBGSIABKIGjDnMAwkIMkKkUpuZCYCtUAsIgSRxg6agwEMAgg1IAiB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:bdf2f2c6ceffffff
Perceptual Hash:e464ce999b9b8626
Difference Hash:792624989a621a0a
Wavelet Hash:bd30100800fefbff
Color Hash:#87a7c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data