Security Scan Report: nanni504.wixstudio.com

Submitted: Oct 28, 2025, 10:02:34 PMCompleted: Oct 28, 2025, 10:03:42 PMpubliccompleted
Loading additional data...

Summary

This website contacted 32 IPs in 1 country across 10 domains to perform 106 HTTP transactions. The main domain is nanni504.wixstudio.com and was registered NaN years ago.

Submitted URL: https://nanni504.wixstudio.com/yuhh7

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam harvesting AT&T credentials; avoid and report.

Risk Factors
Social engineering threats detected by Google Safe Browsing
Malicious Indicators of Compromise (wix.com) associated with the site
Login form collecting password on a suspicious Wix subdomain
Impersonation of AT&T brand on an unranked domain
UNRANKED Cisco Umbrella status combined with brand claims
Domain age information unavailable

Details

Page Title

Home | My Site

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

The domain name 'nanni504.wixstudio.com' uses the commercial generic top-level domain (.com), featuring subdomain 'nanni504'. Count 9 characters in 'wixstudio' holding 4 vowels versus five consonants. Tokenizing the label suggests three words: wi, x, studio. Expect two characters per word on average. 'wi' most often appears in Chinese (Zhuyin). It also appears in English and Indonesian contexts. Net impression: Chinese (Zhuyin) phrase.

Screenshot

Security scan screenshot of https://nanni504.wixstudio.com/yuhh7

Page Load Overview

36.90s
Total Load Time
106
HTTP Requests
10
Domains
3.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:130 chars
Detector Agreement:67%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
133.167.227.32United States
AS16509AMAZON-02
334.144.206.118Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
33.167.227.129United States
AS16509AMAZON-02
334.49.229.81Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
334.149.206.255Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
3151.101.2.217San Francisco, California, United States
AS54113FASTLY
3151.101.194.217San Francisco, California, United States
AS54113FASTLY
318.213.190.149Ashburn, Virginia, United States
AS14618AMAZON-AES
33.167.227.108United States
AS16509AMAZON-02
33.167.227.123United States
AS16509AMAZON-02
10632--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T115031CA4BD14087F51634BDCF3AA4288A663F909D7CD45A4F2D4AE685FE3EF52803324

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:OV+EsZx8/G8IJ5Er2ACMTR44/mp81eQELUlOegdtHDfCCwM2BICrM2BS3jEM2BUv:O+EsZ/8cMTYp81eQELUlOegDDfCCwM20

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:41166:BBhmryURRoBNSVDAAiREBAYBSQAYWIBCICEGQkgM6cAXKh8YOD5AKwcioKUgUIBAgIUcAUCmmQgwjExaMozBgpYiwABpCA0M

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data