Security Scan Report: www.bills.com

Site favicon
Submitted: Jun 10, 2026, 12:09:52 PMCompleted: Jun 10, 2026, 12:11:34 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is bills.com and was registered NaN years ago.

Submitted URL: https://www.bills.com/learn/debt/how-does-debt-relief-work

AI Security Verdict

Safe Website

Confidence: 92%

0
Risk Score

The site is a long‑standing, self‑branded informational page with no malicious indicators; it is legitimate.

Safety Factors
Established domain with long registration history
Self‑branded meta tags match the domain
Absence of credential or payment collection forms
No malicious Indicators of Compromise or YARA detections
No network IDS alerts
Domain age information unavailable

Details

Page Title

How Does Debt Relief Work? | Bills.com

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(46%)

Domain Information

Domain 'www.bills.com' uses the commercial generic top-level domain (.com) and includes subdomain 'www'. Its registrable label 'bills' stretches across 5 characters holding one vowel versus four consonants. Segmentation suggests 1 word: bills. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.bills.com/learn/debt/how-does-debt-relief-work

Page Load Overview

2.87s
Total Load Time
59
HTTP Requests
11
Domains
765 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:12,534 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service46% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
46%
news/blog
35%
corporate
35%
finance banking
32%
adult content
32%

Detected Features

OG: article
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
59104.16.77.43United States
AS13335Cloudflare, Inc.
591--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T192E32A76B500863A1E5386C232CE3B1AF025A156C66E491AF6FC4C5C6FC5EFE1793329

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:+6oL6UAmrmjmrm5mrmymrmcXmrmbmrmtmrm1wslo7BWYyDl/ELSVc3j97jBUK:+6oL6vhI7BWYwlOSVgj9P

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:144352:BGUJklENEXpEhoIJIAwrDAkpoWgJkCmQFAQjIfECLAoJPllAmiQpIjAFUKmkAoGHGAG1owEOQAmCEiSzminomAwxEEIAVhgQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc3c3c3c3ffe7ef
Perceptual Hash:b03c93974c65ce65
Difference Hash:281e9696960d0e1d
Wavelet Hash:8e83c3c3c3c7e781
Color Hash:#40bf44

Other Hashes

Crop Resistant:281e9696960d0e1d

Scan History

Scan history not available

Unable to load historical scan data