Security Scan Report: mail238.com

Redirected to: https://mail238.com/#/pages/login/login

Submitted: Jan 11, 2026, 11:42:56 AMCompleted: Jan 11, 2026, 11:45:09 AMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 1 HTTP transaction. The main domain is mail238.com and was registered NaN years ago.

Submitted URL: http://mail238.com/

Effective URL: https://mail238.com/#/pages/login/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

High‑risk phishing site; do not enter any credentials and report as scam.

Risk Factors
Newly registered domain (<7 days) with login prompts
Social engineering warning from Google Safe Browsing
Absence of any legitimate ranking or reputation
Credential collection interface on a brand‑new, untrusted domain
Domain age information unavailable

Details

Page Title

Login

Scan Type

public

Language

🇺🇸

English

(59% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'mail238.com' on the commercial generic top-level domain (.com) with no subdomain. The second-level label 'mail238' is 7 characters long split between two vowels and two consonants, notching three digits. It segments into two words: mail, 238. The median word length lands at 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://mail238.com/

Page Load Overview

51.12s
Total Load Time
29
HTTP Requests
2
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:59%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:59%
Script Type:Latin
HTML Lang Attribute:zh-CN
Text Length:162 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15104.21.40.48United States
AS13335CLOUDFLARENET
14106.54.228.253United States
292--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11FE37762BA88185DFD2BCD89C096B3F9B76F6A6182529DC7FB203735CF845C3221161D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:lbfFGsp0NVr7fnaM/51fuPlIHGvXNWPf1f4yH9sUnbauJ9BxEuMa8Qc1tblK1mk7:lbfF+rr7fnFf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:150758:Qma8oxMhiADQoGToByhyAAPwgSrTYIgQMDIEpQE+GiQIoA2iIiZLFFIVIqJAMCEbFASECCmAKIRGWEe3QgABJEEJ0AdQRARO

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff00000000ff
Perceptual Hash:fa85857e7a05d550
Difference Hash:0201004105155101
Wavelet Hash:ffffff00000000ff
Color Hash:#93671f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data