Security Scan Report: bnmsc.com

Redirected to:
https://accounts.intuit.com/app/sign-in?redirect_uri=https%3A%2F%2Facc...
Site favicon
Submitted: Aug 10, 2026, 8:50:28 PMCompleted: Aug 10, 2026, 8:51:44 PMpubliccompleted

This website contacted 5 IPs in 2 countries across 17 domains to perform 140 HTTP transactions. The main domain is accounts.intuit.com and was registered 32 years ago.

Submitted URL: https://bnmsc.com/i236ds/?prd.intuit.com/ss/tid=ace90h54162e-f0498f4c2001-22c1da5d9b64-bb197da20710&redirect_uri=app-account-over

Effective URL:

https://accounts.intuit.com/app/sign-in?redirect_uri=https%3A%2F%2Facc...
Redirected

AI Security Verdict

High Risk

Confidence: 74%

8
Risk Score

Unrelated, unranked domain bnmsc.com funnels visitors into an Intuit-branded sign-in page via a crafted redirect_uri URL — a scanner-evasion phishing shape impersonating Intuit. Do not sign in via this link; use intuit.com directly.

Risk Factors (3)
Cross-domain funnel from unrelated host bnmsc.com into a brand (Intuit) sign-in page
Deceptive URL structure embedding intuit.com / redirect_uri inside a non-Intuit domain path
Brand impersonation: Intuit login branding served on an unrelated, unranked entry domain
Domain age information unavailable

Details

Page Title

Intuit Accounts - Sign In

Scan Type

public

Domain Name Analysis

The domain 'bnmsc.com' uses the commercial generic top-level domain (.com). Its registrable label 'bnmsc' stretches across 5 characters with zero vowels and 5 consonants. Segmentation suggests 2 words: bn, msc. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bnmsc.com/i236ds/?prd.intuit.com/ss/tid=ace90h54162e-f0498f4c2001-22c1da5d9b64-bb197da20710&redirect_uri=app-account-over

Page Load Overview

6.10s
Total Load Time
2.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:709 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software77% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
77%
corporate business
26%
government public service
25%
social_media
25%
corporate
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
28142.250.154.95Google · CDNUnited States
AS15169Google LLC
28172.64.147.188Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
28104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
28190.211.254.96London, England, United Kingdom
AS51852Private Layer INC
28151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1405--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F004FA92A914583A7B1B0BFEB471E906D37875DBC0C0C8C87DDD901D6BDF9AA1332629

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:TcdtKPaGt8kQrn4GiPRBLxbEBgsPgxggKg6gUgOBdGTLHc50j:gdtKPaGt8kQrn7iPRBLVEbAmS

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:186031:AARcnRIQUJeXeEIATkQXYKAAwIAlEAAchSJVwRFETgAAZQFpZkAMJdOogDDcjGLU1EGEIQBoQYAIKDoj4AgKK+FEAJgTLABA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7dbffff81
Perceptual Hash:b39b8ccccc263399
Difference Hash:20324c0c3208000b
Wavelet Hash:1f1f071f3838bc80
Color Hash:#6ce089

Other Hashes

Crop Resistant:20324c0c3208000b

Scan History

Scan history not available

Unable to load historical scan data