Security Scan Report: divvy.co

Redirected to: https://www.bill.com/product/spend-and-expense

Submitted: Mar 26, 2026, 7:54:28 AMCompleted: Mar 26, 2026, 7:56:07 AMpubliccompleted
Loading additional data...

Summary

This website contacted 21 IPs in 1 country across 22 domains to perform 1 HTTP transaction. The main domain is bill.com and was registered NaN years ago.

Submitted URL: https://divvy.co

Effective URL: https://www.bill.com/product/spend-and-expenseRedirected

The Cisco Umbrella rank of the primary domain is #57,039 of the top 1 million websites

AI Security Verdict

Safe Website

Confidence: 95%

0
Risk Score

Legitimate redirect to Bill.com product page; no phishing or malware observed.

Safety Factors
Established domain age (>30 years)
Official brand domain used after redirect
No credential or payment collection
No malicious JavaScript YARA matches
No Indicators of Compromise
Domain age information unavailable

Details

Page Title

Expense Management Software - BILL Spend & Expense

Scan Type

public

Language

🇺🇸

English

(45% confidence)

Category

forum

(40%)

Domain Information

The domain name 'divvy.co' uses the Colombian country-code top-level domain (.co) with no subdomain. The core label 'divvy' covers 5 characters holding 1 vowel versus 4 consonants. Word splitting yields one word: divvy. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://divvy.co

Page Load Overview

5.97s
Total Load Time
174
HTTP Requests
50
Domains
1.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:45%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:45%
Script Type:Latin
Text Length:34,910 chars
Detector Agreement:80%

Website Classification

Primary Category

forum40% confidence
Type: webapp
Method: structural

All Detected Categories

forum
40%
e-commerce
30%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14104.18.0.22United States
AS13335Cloudflare, Inc.
8172.217.20.138United States
AS15169Google LLC
83.174.47.131United States
AS16509Amazon.com, Inc.
8142.251.127.95United States
8151.101.1.229United States
891.235.132.130United States
AS30286ThreatMetrix Inc.
813.33.222.116United States
8104.18.86.42United States
AS13335Cloudflare, Inc.
8104.18.161.117United States
AS13335Cloudflare, Inc.
865.9.175.56United States
AS16509Amazon.com, Inc.
17421--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BA94C5B2B050642612174FD8F375BB2AB2EBD29DCF8304D4F2FC83985BCAC95D916994

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:GYOFqLvSztsp/O+vaYTS8wel/+yrl6XSCKQGDIWEqiPHuESPvTjyBO4yt6asgpBX:V+yNs3uLklaOD7Id/djupZIL3BR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:432811:WGlAgAqkoAiolgQMK0lANUKNUwPBkEAMWCEAFUAmAMGMeYOCUQIwUkxGKOIJlIEQKBTMdIADEjCAhFIAQEFTSD1DEBLWgHiE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fdff8b8f8181ffff
Perceptual Hash:bd1ac24bea923969
Difference Hash:796a3a3813330c06
Wavelet Hash:fd030a0e000affff
Color Hash:#5653ac

Other Hashes

Crop Resistant:796a3a3813330c06

Scan History

Scan history not available

Unable to load historical scan data