Security Scan Report: plus.com

Submitted: Dec 20, 2025, 1:33:42 PMCompleted: Dec 20, 2025, 1:34:32 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is plus.com and was registered NaN years ago.

Submitted URL: https://plus.com

The Cisco Umbrella rank of the primary domain is #440,519 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Site impersonates Plusnet on a low‑ranked domain, indicating high‑risk phishing.

Risk Factors
Brand impersonation / typosquatting (Plusnet on plus.com)
Low domain ranking for a well‑known brand
Domain age information unavailable

Details

Page Title

Plusnet | Service unavailable

Scan Type

public

Language

🇺🇸

English

(41% confidence)

Category

social media network

(56%)

Domain Information

The domain 'plus.com' uses the commercial generic top-level domain (.com). Count 4 characters in 'plus' with one vowel and 3 consonants. It segments into one word: plus. Median word length comes out to four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://plus.com

Page Load Overview

5.98s
Total Load Time
2
HTTP Requests
1
Domains
15 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:41%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:41%
Script Type:Latin
Text Length:252 chars
Detector Agreement:67%

Website Classification

Primary Category

social media network56% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

social media network
56%
adult content
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1212.159.8.2Dronfield, England, United Kingdom
AS6871British Telecommunications PLC
1212.159.9.2Dronfield, England, United Kingdom
AS6871British Telecommunications PLC
22--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D303E03F07891A0D28064634AD6F2410AEFB6A23E4871DB6FF0DF0447B9C56E28B265D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:wVpHVb0rc9kocBPY1o4BG9+Xu9z+UWiO5MIJva2v:wVDb0Ucxy0++5TWcwa2v

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:37751:BCYJaOsmJsQSACYAA+DwgIqQhg64AAAOBjAHgwIQgdECpATEJoMQbIwYxFqYSGCA4TCACCJmsQlOEpDyFUyoLYBPAAfkw0g1

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc1000ecffeffff
Perceptual Hash:f569ced192870731
Difference Hash:0013c7d418980000
Wavelet Hash:fe400000c6cefeff
Color Hash:#79bfd2

Other Hashes

Crop Resistant:0013c7d418980000

Scan History

Scan history not available

Unable to load historical scan data