Security Scan Report: eicwld.com

Submitted: Dec 14, 2025, 8:46:41 AMCompleted: Dec 14, 2025, 8:47:00 AMpubliccompleted
Loading additional data...

Summary

This website contacted 33 IPs in 2 countries across 5 domains to perform 8 HTTP transactions. The main domain is eicwld.com and was registered NaN years ago.

Submitted URL: https://eicwld.com/cp/ox_file.html

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam impersonating Ecwid; avoid and report.

Risk Factors
Newly registered domain (<7 days) with credential collection
Brand impersonation on untrusted domain
Presence of a password field without any legitimate service context
Unranked domain lacking reputation
Absence of any known legitimate redirect service
Domain age information unavailable

Details

Page Title

Login | Ecwid

Scan Type

public

Language

πŸ‡ΊπŸ‡Έ

English

(80% confidence)

Category

e-commerce shopping

(90%)

Domain Information

The domain name 'eicwld.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. Count 6 characters in 'eicwld' with 2 vowels and four consonants. Segmentation suggests three words: ei, cw, ld. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://eicwld.com/cp/ox_file.html

Page Load Overview

3.92s
Total Load Time
8
HTTP Requests
5
Domains
56 KB
Total Size

Language Analysis

Primary Language

πŸ‡ΊπŸ‡ΈEnglish
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:411 chars
Detector Agreement:100%

Website Classification

Primary Category

e-commerce shopping90% confidence
Type: webapp
Method: ml+structural

All Detected Categories

e-commerce shopping
90%
social media network
84%
technology software
75%
corporate business
26%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8104.26.2.143United States
AS13335CLOUDFLARENET
0198.54.116.36United States
AS22612NAMECHEAP-NET
0142.250.185.206United States
AS15169GOOGLE
03.171.211.10United States
AS16509AMAZON-02
0104.26.3.143United States
AS13335CLOUDFLARENET
03.167.227.35United States
AS16509AMAZON-02
02600:9000:28c5:ce00:1f:58b3:eac0:21United States
AS16509AMAZON-02
03.167.227.87United States
AS16509AMAZON-02
03.167.227.10United States
AS16509AMAZON-02
0172.67.68.11United States
AS13335CLOUDFLARENET
833--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D863B02E21B1047E7C5780FAE5A2BA18B97370D3DD1AC1BAB6DD45002FC2E3599D7748

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:qhyLh8uPw4ahkCJ3P7y55S4dWQo/KEAGvzfjD3Nu:qhy6unekaPW5zW9PL7Y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:67893:SNyKMYiakmkEASIQNEMEDE4QIFtXIsSBPNQQQQJKxKAK8IYcADIBEeCsNCCEAFIoIMQCoIU1CwCZkaGWLaTFCJQEoMgGSBmA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffb3f393939f9ff
Perceptual Hash:cbf0f4074b681796
Difference Hash:0403e46343430344
Wavelet Hash:f0f036303030f1f3
Color Hash:#a8ac53

Other Hashes

Crop Resistant:0403e46343430344

Scan History

Scan history not available

Unable to load historical scan data