Scan report · about 1 month agoPublic

paypal-details.com

188.114.96.1AS13335 · US
Verdict

Dangerous — confirmed threat

Automated

Its web address was registered only 4 days before this scan (on 2026-08-17) — most phishing sites run on brand-new domains. It is listed on external threat-intelligence feeds. We found strong evidence that this site is malicious — for example a phishing page, a scam, or hostile code. Treat anything it asked for (passwords, card details, codes) as exposed.

What to do

Do not enter any information or download anything. If you already did, change those passwords now and contact your bank if payment details were involved. Block or report the link to your team.

This reflects the evidence found at the time of the scan. If you believe it is a mistake, you can escalate it for analyst review.

Findings

Strongest first
InfoCross-domain scripts injected at runtime
7 script(s)

The page dynamically injected scripts from other domains. This is extremely common on legitimate sites (CDNs, analytics, asset domains) and is shown for context only.

Analyst noteNoisy by itself — a CDN/asset domain (e.g. a brand's own *.githubassets.com) is normal. Only meaningful if the source domain is unrelated/suspicious.

Infrastructure

IP
188.114.96.1CLOUDFLARENET - Cloudflare, Inc., US · AS13335US
TLS
CN=WE1, O=Google Trust Services, C=US · expires Nov 15, 2026
Redirects
1 hop · / → /se/home

WHOIS

Registrar
Dominet (HK) Limited
Created
Aug 17, 2026
Expires
Aug 17, 2027
Nameservers
cortney.ns.cloudflare.comfinley.ns.cloudflare.com
38 malicious15 suspicious

Hashes & fingerprints

Page capture

Live

Title “Skicka pengar, handla, hantera betalningar med mera | PayPal SE”

Engines

7 · time to verdict

Page

HTTP
200 · Completed
Title
Skicka pengar, handla, hantera betalningar med mera | PayPal SE
Load
4.02 s · 122 requests
Stack · 11BootstrapCart FunctionalityCloudflareCloudflare Bot ManagementEmotionGoogle Tag Manager