Security Analysis Results

www.hsbc.lk

Comprehensive domain security and infrastructure analysis

Live Website Preview

website screenshot of https://coerueiys.top/

No Security Risks Detected

This domain appears to be safe and secure

100%
Score

Disclaimer: This assessment is based on automated analysis of publicly available information. Results are for informational purposes only. For critical applications, consult security professionals.

Scan Information

Last checked:July 31, 2025 16:09:24
Scan Complete

Refresh page after 10 minutes
for updated results

Page Information

Target URL
https://coerueiys.top/
Page Title
HSBC Sri Lanka - Credit Cards, Accounts, Loans, Insurance
www.hsbc.lk faviconSite Favicon
Status
Active

Host Information

Domain
www.hsbc.lk
Server
Apache
Country
United States
IP Address
3.169.183.2
ASN Information
16509
AMAZON-02

Technologies

Adobe Experience Manager logo
Adobe Experience Manager
CMS
Java logo
Java
Programming languages
Amazon Web Services logo
Amazon Web Services
PaaS
Apache HTTP Server logo
Apache HTTP Server
Web servers
Tealium AudienceStream logo
Tealium AudienceStream
Segmentation
Tealium logo
Tealium
Tag managers
+8 more technologies detected

SSL Certificate

HTTPS Enabled
Secure
Certificate Issuer
49m430 Gateway Proxy BISO MITM CA
Valid From
2025-07-29 05:34:59
Valid Until
2025-08-28 05:35:29
Subject Name
www.hsbc.lk

Performance Statistics

78
Total Requests
20
Domains
19
IP Addresses
2.99 MB
Transfer Size
Content Size8.12 MB

HTTP Headers

accept-ranges
bytes
cache-control
max-age=60, s-maxage=60, stale-if-error=3600
cf-team
2902d8386b000111f08a57c400000001
content-encoding
gzip
content-length
16277
content-security-policy
default-src 'self' *.hsbc.com.hk *.mastercard.com.au *.demdex.net *.lpsnmedia.net *.liveperson.net; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.tiqcdn.com *.tealiumiq.com *.liveperson.net *.googletagmanager.com *.hsbc.co.uk *.hsbc.com.hk *.doubleclick.net *.googleadservices.com *.lpsnmedia.net *.optimizely.com *.facebook.net *.google.com *.gstatic.com *.appdynamics.com *.googleapis.com *.awswaf.com *.analytics.yahoo.com vjs.zencdn.net players.brightcove.net *.ads-twitter.com *.hsbc.ae rum.hlx.page *.licdn.com *.ucweb.com connect.facebook.net googleads.g.doubleclick.net www.googletagmanager.com www.google-analytics.com cdn.appdynamics.com ssl.google-analytics.com *.omtrdc.net snap.licdn.com cdn-assets-prod.s3.amazonaws.com *.google-analytics.com www.google.com; img-src data: * android-webview-video-poster: android-webview:; connect-src 'self' *.tiqcdn.com *.tealiumiq.com *.hsbc.com.hk *.eum-appdynamics.com *.optimizely.com wss://*.liveperson.net *.cloud.hsbc *.awswaf.com *.analytics.yahoo.com players.brightcove.net edge.api.brightcove.com *.googleapis.com *.hsbc.ae *.omtrdc.net *.demdex.net *.hsbc.co.om *.brightcovecdn.com *.hsbc.co.uk manifest.prod.boltdns.net *.qualtrics.com adservice.google.com www.facebook.com www.security.online-banking.hsbc.lk maps.googleapis.com ad.doubleclick.net www.google.com *.ucweb.com analytics.google.com stats.g.doubleclick.net www.google-analytics.com *.dbankcloud.com www.google.lk logx.optimizely.com rbwm-api.us.hsbc.com rbwm-api.hsbc.co.uk rbwm-api.hsbc.com.hk cdn.linkedin.oribi.io cdn-assets-prod.s3.amazonaws.com *.facebook.com *.google.com *.google-analytics.com *.google.lk *.online-banking.hsbc.lk *.g.doubleclick.net *.analytics.google.com *.googletagmanager.com *.security.online-banking.hsbc.lk; frame-src 'self' blob: *.lpsnmedia.net *.optimizely.com *.liveperson.net *.google.com *.doubleclick.net *.analytics.yahoo.com players.brightcove.net www.facebook.com *.zscloud.net m.youtube.com *.demdex.net *.zscalertwo.net sts-aad.auth.hsbc.com block.opendns.com gateway.zscaler.net connect.facebook.net *.id.opendns.com *.menlosecurity.com bid.g.doubleclick.net; frame-ancestors 'self' www.hsbc.lk; font-src 'self' data: *.hsbc.com.hk *.gstatic.com fonts.gstatic.com cdn.jsdelivr.net *.alicdn.com fonts.googleapis.com *.avast.com; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' *.hsbc.com.hk *.googleapis.com players.brightcove.net; object-src 'self' blob: players.brightcove.net; child-src 'self'; media-src 'self' blob: *.boltdns.net *.media.brightcove.com *.llnw.net *.llnwd.net *.akafms.net *.akamaihd.net *.cf.brightcove.com *.brightcovecdn.com lpcdn.lpsnmedia.net manifest.prod.boltdns.net ssl.gstatic.com players.brightcove.net; manifest-src 'self'; upgrade-insecure-requests ; report-uri /csp/report;
content-type
text/html; charset=utf-8
date
Thu, 31 Jul 2025 16:09:44 GMT
last-modified
Wed, 30 Jul 2025 03:48:17 GMT
s
dispatcher2apsoutheast1-b80
server
Apache
server-timing
cfReqDur;dur=1028.875
strict-transport-security
max-age=31536000; includeSubdomains
vary
Accept-Encoding
via
1.1 0a9fd9b1edd4fcf9c2536f0010f33152.cloudfront.net (CloudFront)
x-amz-cf-id
ic6leLEmUiEIKfbO8toAGeF2yTw44rhQvRMt_EoCiIkuffpyYnkSSA==
x-amz-cf-pop
MRS52-P3
x-cache
Miss from cloudfront
x-content-type-options
nosniff
x-frame-options
SAMEORIGIN
x-xss-protection
1; mode=block
21 headers detected

Technology Stack Analysis

Adobe Experience Manager

Adobe Experience Manager

CMS

Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.

Java

Java

Programming languages

Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.

Amazon Web Services

Amazon Web Services

PaaS

Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.

Apache HTTP Server

Apache HTTP Server

Web servers

Apache is a free and open-source cross-platform web server software.

Tealium AudienceStream

Tealium AudienceStream

Segmentation

Tealium AudienceStream is an omnichannel customer segmentation and real-time action engine.

Tealium

Tealium

Tag managersCustomer data platform

Tealium provides a sales enterprise tag management system and marketing software.

Optimizely

Optimizely

A/B TestingPersonalisation

Optimizely is an experimentation platform that helps developers build and run A/B tests on websites.

LivePerson

LivePerson

Live chat

LivePerson is a tool for conversational chatbots and messaging.

Linkedin Insight Tag

Linkedin Insight Tag

Analytics

LinkedIn Insight Tag is a lightweight JavaScript tag that powers conversion tracking, website audiences, and website demographics.

HSTS

HSTS

Security

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

Google Analytics

Google Analytics

Analytics

Google Analytics is a free web analytics service that tracks and reports website traffic.

Facebook Pixel

Facebook Pixel

Analytics

Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.

Amazon S3

Amazon S3

CDN

Amazon S3 or Amazon Simple Storage Service is a service offered by Amazon Web Services (AWS) that provides object storage through a web service interface.

Amazon CloudFront

Amazon CloudFront

CDN

Amazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds.

Website Cookies 5

utag_main

.hsbc.lk

Value
v_id:0198613f4326001abfe4763302090506f00140670001a$_sn:1$_se:2$_ss:0$_st:1753979995606$ses_id:1753978192685%3Bexp-session$_pn:1%3Bexp-session$dc_group:71$dc_visit:1$dc_event:1%3Bexp-session$_prevpage:pws%3Ahomepage%3Bexp-session$dc_region:ap-northeast-1%3Bexp-session
Expires:7/31/2026

_gcl_au

.hsbc.lk

Value
1.1.1267179530.1753978200
Expires:10/29/2025

optimizelySession

.hsbc.lk

Value
[optimizelySession redacted]
Expires:1/27/2026

_fbp

.hsbc.lk

Lax
Value
fb.1.1753978203107.648627524337774008
Expires:10/29/2025

optimizelyEndUserId

.hsbc.lk

Value
oeu1753978194111r0.9825266813259559
Expires:1/27/2026

External Links 16

Business

www.business.hsbc.lk

Analyze
Target URL
https://www.business.hsbc.lk/en-gb

Careers

www.hsbc.com

Analyze
Target URL
https://www.hsbc.com/careers

Register

www.security.online-banking.hsbc.lk

Analyze
Target URL
https://www.security.online-banking.hsbc.lk/gsa/?idv_cmd=idv.SaaSSecurityCommand&SaaS_FUNCTION_NAME=Saas_Registration&COUNTRY_CODE=LK&GROUP_MEMBER_CODE=HSBC&locale=en&ProductType=PBK&CustomerType=PFS&APPNAME=HUBPIB&IC_GSM_APPID=GSP_IC_AP

Back to my accounts

www.services.online-banking.hsbc.lk

Analyze
Target URL
https://www.services.online-banking.hsbc.lk/gpib/

Log Out

www.services.online-banking.hsbc.lk

Analyze
Target URL
https://www.services.online-banking.hsbc.lk/gpib/channel/?idv_cmd=idv.Logoff&nextPage=saasextention/ICSaaSExtRedirectionController/PREMIER_LOGOUT_LANDING_PAGE

HSBC Live+ Credit Card HSBC Live+ Credit Card

cardapply.hsbc.lk

Analyze
Target URL
https://cardapply.hsbc.lk/?cardType=Live+&

Visa Platinum Cashback Credit Card Visa Platinum Cashback Credit Card

cardapply.hsbc.lk

Analyze
Target URL
https://cardapply.hsbc.lk/?cardType=visaPlatinum&

HSBC Rewards Credit Card HSBC Rewards Credit Card

cardapply.hsbc.lk

Analyze
Target URL
https://cardapply.hsbc.lk/?cardType=visaSignature&

Online security Online security

www.hsbc.com

Analyze
Target URL
https://www.hsbc.com/online-security

home&Away home&Away

www.homeandaway.hsbc.com

Analyze
Target URL
https://www.homeandaway.hsbc.com/?WT.mc_id=ASPHA_2009LK_001

Expat Explorer Expat Explorer

www.expat.hsbc.com

Analyze
Target URL
https://www.expat.hsbc.com/expat-explorer/

Thinking Internationally Thinking Internationally

internationalservices.hsbc.com

Analyze
Target URL
https://internationalservices.hsbc.com/

About HSBC Careers, media, investor and corporate information

www.about.hsbc.lk

Analyze
Target URL
https://www.about.hsbc.lk/

HSBC Safeguard

www.business.hsbc.lk

Analyze
Target URL
https://www.business.hsbc.lk/en-gb/regulations/safeguard

www.hsbc.com.lk/dsk

www.hsbc.com.lk

Analyze
Target URL
http://www.hsbc.com.lk/dsk

click to open HSBC Sri Lanka's facebook This link will open in a new window

www.facebook.com

Analyze
Target URL
https://www.facebook.com/HSBCSriLanka

Requested Domains 20

a19069622224.cdn.optimizely.com

Unknown Type
No category information available

accdn-vip.lpsnmedia.net

Unknown Type
No category information available

akamai.tiqcdn.com

Unknown Type
No category information available

cdn.optimizely.com

Unknown Type
No category information available

coerueiys.top

Unknown Type
No category information available

collect-ap-northeast-1.tealiumiq.com

Unknown Type
No category information available

connect.facebook.net

Unknown Type
No category information available

hsbc.edge.sdk.awswaf.com

Unknown Type
No category information available

logx.optimizely.com

Unknown Type
No category information available

lpcdn-vip.lpsnmedia.net

Unknown Type
No category information available

lptag.liveperson.net

Unknown Type
No category information available

px.ads.linkedin.com

Unknown Type
No category information available

px4.ads.linkedin.com

Unknown Type
No category information available

snap.licdn.com

Unknown Type
No category information available

tags.tiqcdn.com

Unknown Type
No category information available

visitor-service-ap-northeast-1.tealiumiq.com

Unknown Type
No category information available

www.facebook.com

Unknown Type
No category information available

www.google.com

Unknown Type
No category information available

www.googletagmanager.com

Unknown Type
No category information available

www.hsbc.lk

Unknown Type
No category information available
LinkCheck

© 2025 LinkCheck. Secure domain analysis you can trust.