Security Scan Report: bellsouth-att-sign-in-b0c7cd.webflow.io

Site favicon
Submitted: Nov 3, 2025, 9:26:57 PMCompleted: Nov 3, 2025, 9:27:38 PMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 1 country across 4 domains to perform 10 HTTP transactions. The main domain is bellsouth-att-sign-in-b0c7cd.webflow.io and was registered NaN years ago.

Submitted URL: https://bellsouth-att-sign-in-b0c7cd.webflow.io/

AI Security Verdict

High Risk

Confidence: 95%

9
Risk Score

Phishing site impersonating BellSouth, high risk

Risk Factors
Credential harvesting form on a non‑official brand domain
Brand impersonation (BellSouth) on an untrusted subdomain
Google Safe Browsing social engineering detection
Domain age information unavailable

Details

Bot Protection Detected

This website is protected by Cloudflare bot protection. Our scanner was challenged or blocked during access.

Page Title

bellsouth att sign In

Scan Type

public

Language

🇺🇸

English

(71% confidence)

Category

documentation technical

(29%)

Domain Information

The domain 'bellsouth-att-sign-in-b0c7cd.webflow.io' uses the British Indian Ocean Territory country-code top-level domain (.io), featuring subdomain 'bellsouth-att-sign-in-b0c7cd'. The registrable portion 'webflow' spans 7 characters containing two vowels alongside 5 consonants. Splitting it apart reveals 2 words: web, flow. Median word length is 3.5 characters. The linguistic tilt is Chinese (Pinyin) for 'web'. You will also see it in English and Vietnamese contexts.

Screenshot

Security scan screenshot of https://bellsouth-att-sign-in-b0c7cd.webflow.io/

Page Load Overview

25.44s
Total Load Time
10
HTTP Requests
4
Domains
12 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:71%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:71%
Script Type:Latin
Text Length:608 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical29% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1013.226.247.67United States
AS16509AMAZON-02
0172.64.151.8United States
AS13335CLOUDFLARENET
0104.18.94.41United States
AS13335CLOUDFLARENET
0104.18.161.117United States
AS13335CLOUDFLARENET
013.226.247.18United States
AS16509AMAZON-02
013.226.247.220United States
AS16509AMAZON-02
0104.18.160.117United States
AS13335CLOUDFLARENET
02606:4700::6812:a175United States
AS13335CLOUDFLARENET
02606:4700::6812:5f29United States
AS13335CLOUDFLARENET
0104.18.36.248United States
AS13335CLOUDFLARENET
1016--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DF71B777A015845E920318F0F784B18CF586935ECE868540E5FAE5ED63ACCE4693AEDC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:wzz1tPO/zkLTw4QcgOGjDvxO24+RWQRIbty0OYON1r:APF3wH3fxe+RWQRIbtR5ON1r

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3796:EEAEGEBCgECl1YgIoACAJA0AIA4EAIAAAAAABAAAWJgAAgAGGAhBCYQCASAgBAQADBKEAAwAICCACDgAxAAASquBEUABAAka

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data