Security Scan Report: noreplytransfertsa.wixsite.com

Submitted: Dec 11, 2025, 7:28:08 PMCompleted: Dec 11, 2025, 7:28:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 32 IPs in 1 country across 8 domains to perform 125 HTTP transactions. The main domain is noreplytransfertsa.wixsite.com and was registered NaN years ago.

Submitted URL: https://noreplytransfertsa.wixsite.com/my-site-1

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam; do not provide credentials

Risk Factors
Malicious Indicators of Compromise match on primary domain (wixsite.com)
Credential harvesting form (email and password fields)
Unranked domain in Cisco Umbrella with brand‑like language
Use of free web‑hosting platform flagged as suspicious
Domain age information unavailable

Details

Page Title

Accueil | My Site 1

Scan Type

public

Language

🇫🇷

French

(80% confidence)

Category

corporate

(50%)

Domain Information

The domain name 'noreplytransfertsa.wixsite.com' uses the commercial generic top-level domain (.com) and includes subdomain 'noreplytransfertsa'. The core label 'wixsite' covers 7 characters containing three vowels alongside 4 consonants. Segmentation suggests three words: wi, x, site. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://noreplytransfertsa.wixsite.com/my-site-1

Page Load Overview

20.02s
Total Load Time
125
HTTP Requests
8
Domains
1015 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:fr
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:fr
Text Length:177 chars
Detector Agreement:50%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3234.144.206.118Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
352.2.55.140Ashburn, Virginia, United States
AS14618AMAZON-AES
354.83.137.55Ashburn, Virginia, United States
AS14618AMAZON-AES
334.49.229.81Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
33.221.75.61Ashburn, Virginia, United States
AS14618AMAZON-AES
334.204.233.250Ashburn, Virginia, United States
AS14618AMAZON-AES
365.8.131.76United States
AS16509AMAZON-02
3151.101.130.217San Francisco, California, United States
AS54113FASTLY
3151.101.2.217San Francisco, California, United States
AS54113FASTLY
334.149.206.255Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
12532--

Detected Technologies7

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19CE2F9A0F9346C3F66630CFDF1BA638A5153FA0CD9C515A0B2D416986BD7DBA260273C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:5cQV1rd2eB0N60gHVnV5VlDcZmPRG1w5Er2AHMTrBBR/78hVhbWVe1XMJBR1DqM3:5H1E60gHVnV5VgFMTVn78hVhbWVe1XMR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:31861:QiEAhMoiBgAqCCYDAE0QANX0tmKAEoMI4EAGAAmSiFACBCBixjKIk+tRI3QAQRTDKQ20RIJkiIRAAgiUQ1kEUFBIBgCuBKiq

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff181818180400ff
Perceptual Hash:934da4739c6633cc
Difference Hash:0c283a3a32484932
Wavelet Hash:ff2c3c2c3c2400ff
Color Hash:#ac5385

Other Hashes

Crop Resistant:0c283a3a32484932

Scan History

Scan history not available

Unable to load historical scan data