Phishing detection: paypal.com-websppsc-verification.epsilons.co

PayPal
https://paypal.com-websppsc-verification.epsilons.co Access site
Screenshot
Screenshot of paypal.com-websppsc-verification.epsilons.co
Investigate
Domain paypal.com-websppsc-verification.epsilons.co14 CT hosts on apex
URL https://paypal.com-websppsc-verification.epsilons.co
Phishunt analysis Beta
27 low suspicionheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +4.1 Brand in screenshot
  • +2.6 Brand in subdomain
  • +1.6 Young domain
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +1.0 Site cluster
  • +0.8 Brand + login token
  • +0.7 Bulletproof DNS
  • +0.6 Long domain
  • +0.4 Suspicious TLD
  • +0.3 Deep subdomain
  • +0.2 Hyphens
16 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Site impersonates PayPal using a combosquatted domain with the brand name embedded in the subdomain. Flagged by Google Safe Browsing as social engineering, it likely targets PayPal credentials. Hosted on Interserver infrastructure.

Google Safe BrowsingBrand in subdomainBrand + login token
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-05 · confidence 65%
Domain & Network
Whois
Network
Country United StatesUnited States
ASN AS19318
TLS Cert -
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Report this phishing

Tracked from 2026-08-05 17:26 UTC  ·  Last refreshed 2026-08-31 03:30 UTC