Security Scan Report: 2sigmasf.com

Redirected to: https://2sigmasf.com/#/pages/login/login

Submitted: Nov 10, 2025, 8:58:02 PMCompleted: Nov 10, 2025, 8:58:55 PMpubliccompleted
Loading additional data...

Summary

This website contacted 26 IPs in 0 countries across 5 domains to perform 240 HTTP transactions. The main domain is 2sigmasf.com and was registered NaN years ago.

Submitted URL: https://2sigmasf.com/

Effective URL: https://2sigmasf.com/#/pages/login/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam targeting credentials on a newly created, unranked domain.

Risk Factors
Brand‑new domain (<7 days) hosting a credential‑harvesting login page
Unranked, low‑reputation domain
Absence of any legitimate brand verification
Domain age information unavailable

Details

Page Title

IMG-AI

Scan Type

public

Language

🇺🇸

English

(43% confidence)

Category

finance banking

(53%)

Domain Information

Domain '2sigmasf.com' uses the commercial generic top-level domain (.com). Count 8 characters in '2sigmasf' containing 2 vowels alongside 5 consonants, along with one digit. Breaking it apart gives 3 words: 2, sigma, sf. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://2sigmasf.com/

Page Load Overview

16.07s
Total Load Time
240
HTTP Requests
5
Domains
109 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:43%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:43%
Script Type:Latin
HTML Lang Attribute:zh-CN
Text Length:3,894 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

finance banking53% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
53%
healthcare medical
44%
gambling betting
43%
cryptocurrency blockchain
40%
adult content
38%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15188.114.97.3UnknownUnknown
9172.67.179.77UnknownUnknown
9111.231.169.247UnknownUnknown
9188.114.96.3UnknownUnknown
9104.21.59.146UnknownUnknown
9163.181.92.197UnknownUnknown
92606:4700:3034::6815:3b92UnknownUnknown
92408:4005:30a:4302:6218:d8d9:db29:5dd8UnknownUnknown
92404:2280:18c:0:3::8UnknownUnknown
9124.221.80.91UnknownUnknown
24026--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DE44F920A543386FB637C090B5A5BF16361AE635C3050F6CF3253AEA9BD66D50A37B21

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:OKp8nuhOicImgcaqTND1j8fAZav+RHfUR7edfIevve34wCwbj1fDJLsRPgt9l9qC:9nZmgcaqJDCfeajeG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:259442:mmtwIYQRyeEjhiQZAEgHIgFgMFFkAKgUQAsMDBgsMWy4CGhDA0QwAMCWSBQANAJh0QIGLtxEHryX4EIIAyLBFYxJBADQSkCB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c3c3c3c3c3c3e7e7
Perceptual Hash:e4649b30c6cf9933
Difference Hash:8e868e8e8e968686
Wavelet Hash:c3c3c3c3c3c3c3c3
Color Hash:#ac537b

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data