Security Scan Report: shoe.villarosis.com

Submitted: Nov 10, 2025, 3:51:18 PMCompleted: Nov 10, 2025, 3:51:48 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 0 countries across 2 domains to perform 16 HTTP transactions. The main domain is shoe.villarosis.com and was registered NaN years ago.

Submitted URL: https://shoe.villarosis.com/kunden.iono.de/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing login page impersonating IONOS; avoid and report.

Risk Factors
Credential harvesting form on suspicious domain
Brand impersonation (IONOS/webmail) on unrelated domain
UNRANKED domain with login form
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Language

🇩🇪

German

(44% confidence)

Category

technology software

(85%)

Domain Information

Domain 'shoe.villarosis.com' uses the commercial generic top-level domain (.com), featuring subdomain 'shoe'. The core label 'villarosis' covers 10 characters containing 4 vowels alongside 6 consonants. Tokenizing the label suggests three words: villa, ros, is. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://shoe.villarosis.com/kunden.iono.de/

Page Load Overview

4.42s
Total Load Time
16
HTTP Requests
2
Domains
170 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:44%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:44%
Script Type:Latin
Text Length:474 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software85% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
85%
documentation technical
62%
phishing scam
56%
blog personal website
51%
government public service
51%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4213.165.66.58UnknownUnknown
3188.114.96.3UnknownUnknown
3188.114.97.3UnknownUnknown
32a06:98c1:3121::3UnknownUnknown
32a06:98c1:3120::3UnknownUnknown
165--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12F325E1620F228774247A5A6376747663EA1C403DA16E1003AFC4F9D8F7ACC39A637DE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:bsx5xzeSuwA3DwhW9N2hs92rfgU7CGfFdoWhgp8:boXVroG88

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11325:ghBIxVlAzNneCCMDEdgB6O05AAkhENAggUIqMIQECCgMBFZEjQgBGGMaGSAJhJYQBEkAfJoDNAAjlAqxABi2r5lABiC4Q9Ia

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:cfffc3c3ffffffff
Perceptual Hash:b3319999316666cd
Difference Hash:18304c0c10080000
Wavelet Hash:0f3f0703073f0303
Color Hash:#1f5293

Other Hashes

Crop Resistant:18304c0c10080000

Scan History

Scan history not available

Unable to load historical scan data