Security Scan Report: www.paypal.com

Site favicon
Submitted: Jan 15, 2026, 11:29:06 AMCompleted: Jan 15, 2026, 11:30:45 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 18 HTTP transactions. The main domain is paypal.com and was registered NaN years ago.

Submitted URL: https://www.paypal.com/ncp/payment/QZSZ5V68CU69G

The Cisco Umbrella rank of the primary domain is #1,990 of the top 1 million websitesTop 10K Site

AI Security Verdict

Safe Website

Confidence: 95%

0
Risk Score

Legitimate PayPal payment link with no detected security concerns.

Safety Factors
Established domain with long registration history
High Cisco Umbrella ranking
Official PayPal domain in final URL
Absence of credential or payment collection forms
No malicious Indicators of Compromise detected
Domain age information unavailable

Details

Page Title

PayPal

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(50%)

Domain Information

Domain 'www.paypal.com' uses the commercial generic top-level domain (.com) with subdomain 'www'. Count 6 characters in 'paypal' holding 2 vowels versus four consonants. It segments into 1 word: paypal. Median word length is six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.paypal.com/ncp/payment/QZSZ5V68CU69G

Page Load Overview

2.67s
Total Load Time
60
HTTP Requests
5
Domains
274 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:334 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: dynamic
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15172.64.153.163United States
AS13335CLOUDFLARENET
15104.18.35.171Germany
15104.18.7.168Germany
334.149.66.154Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
604--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B1A3DA4754616E77968BA3817C4B7C03F914609CC1D05890BC9CC7ACAFDFA9E7027AAB

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:Fy0BErTLxnlbzlHN/Vw7pHlLV3FTBX+RUDSTdBJ42TRalrccZi8Tupkft8b9x8Mm:har39TS2daOcZi8TupkC96yip

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:97857:FDGjFiVjMjECKpQowJiZCAUAADSAAIsKSLwGNAGQeDjyAITeICkcYdSFOECQB9wBgjZAIRQQACogRi0C1kRyJFQoe4AxMRkK

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0f09110f0f0f0f0f
Perceptual Hash:a9699696966c6969
Difference Hash:6c12130a0c0c1a0a
Wavelet Hash:0f09010f0f0f0f0f
Color Hash:#79d288

Other Hashes

Crop Resistant:6c12130a0c0c1a0a

Scan History

Scan history not available

Unable to load historical scan data