URL THREAT INTELLIGENCE · v0.5.0 · OPERATIONAL

The full anatomy of a phishing site,
one URL at a time.

ZeroPhish renders the page, runs twelve detection signals against the DOM, certificate chain, brand fingerprint and threat feeds, and returns a typed verdict. Built for security teams and product engineers.

scan
100 scans / day · free · typical scan 2–4 s ·
try
Scan another →
CACHED Showing previous scan from 216 d ago. Click Reanalyze to run a fresh scan.
REVIEW · MEDIUM CONFIDENCE

Review required

brand O2 scan id a1f2a36c duration signals 0 failing / 0
Risk score 0.10
10 / 100 · —
Tags
https :// .
flagged registered domain path protocol / query
URL hxxps://www[.]o2online[.]de/ecare/?contentId=mobile-uebersicht&utm_source=email&utm_medium=nf_crm&utm_campaign=OBI&partnerId=O2_CRM_EMA_TEF_18002&utm_term=crm02_wt02_2025
Brand O2
Screenshot https://cdn.zerophish.ai/8ff9313b-f753-48f8-b702-2b5ef31fefaf.jpg
Scan ID a1f2a36c-ef19-4be2-b737-5b5ad9aaaf7a

No detection signals on this scan — it predates the signal pipeline. Re-analyze to capture them.

Captured page
screenshot · captured at scan live page render

No brand impersonation signals available.

No technical metadata captured for this scan.

Initial scan heuristic + LLM

The given URL belongs to the brand ‘O2’ and is used for user login. The site does not seem to exhibit any social engineering techniques commonly associated with phishing attacks such as alerting the user about a problem with their account or displaying fake logins. Moreover, the site executes a secure HTTPS protocol, further reducing the likelihood of phishing activities. The domain name is also not suspicious. Thus, the site appears to be legitimate.