Security Scan Report: www.google.com

Redirected to: https://firebasestorage.googleapis.com/v0/b/moowlleuwuoeo.appspot.com/o/kkkmmmnnnuuu.html?alt=media&token=b31e2df2-d9ff-4650-baed-3cc260818fbf

Submitted: Jan 15, 2026, 7:55:17 PMCompleted: Jan 15, 2026, 7:56:53 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is firebasestorage.googleapis.com and was registered NaN years ago.

Submitted URL: https://www.google.com/url?q=https://firebasestorage.googleapis.com/v0/b/moowlleuwuoeo.appspot.com/o/kkkmmmnnnuuu.html?alt%3Dmedia%26token%3Db31e2df2-d9ff-4650-baed-3cc260818fbf

Effective URL: https://firebasestorage.googleapis.com/v0/b/moowlleuwuoeo.appspot.com/o/kkkmmmnnnuuu.html?alt=media&token=b31e2df2-d9ff-4650-baed-3cc260818fbfRedirected

The Cisco Umbrella rank of the primary domain is #1 of the top 1 million websitesTop 100 Site

AI Security Verdict

Confirmed Scam

Confidence: 98%

10
Risk Score

Confirmed phishing scam impersonating Zimbra; do not enter credentials.

Risk Factors
Cloud storage hosting with password field
Brand impersonation (Zimbra) on unauthorized domain
Credential harvesting form (username & password)
URL redirection obscuring final destination
Login page presented on a generic storage service
Domain age information unavailable

Details

Page Title

Zimbra Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(51%)

Domain Information

You're looking at domain 'www.google.com' on the commercial generic top-level domain (.com); it also runs on subdomain 'www'. Its registrable label 'google' stretches across 6 characters with three vowels and 3 consonants. Splitting it apart reveals one word: google. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.google.com/url?q=https://firebasestorage.googleapis.com/v0/b/moowlleuwuoeo.appspot.com/o/kkkmmmnnnuuu.html?alt%3Dmedia%26token%3Db31e2df2-d9ff-4650-baed-3cc260818fbf

Page Load Overview

0.78s
Total Load Time
2
HTTP Requests
1
Domains
5 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:163 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software51% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
51%
cryptocurrency blockchain
41%
healthcare medical
40%
adult content
39%
news media journalism
39%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1216.58.210.138United States
AS15169GOOGLE
1142.251.38.74United States
AS15169GOOGLE
22--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E871548755E30891F513E4AC2BE3861136E4C413824DCD6D3E8CA75CDF95AD98EA339C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:nBruqsKNFGKGzYXc9Vgia1iZ7afsuxephA:Bru/KNFl5c9iia1ixakuxeI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3491:hGhOgAiBDAACVAAgAAACEQAEAAAACgCh0UIBCEAQEgBAASgSAIIAACAAIAAABAiADQRAQQAIIgjwmCgFAJkABCAAQCBABCsA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffe7e7e7e7ffff
Perceptual Hash:e68c993366993366
Difference Hash:00304d4d4d4d0810
Wavelet Hash:f0f0e0e0e0e0f0f0
Color Hash:#683a78

Scan History

Scan history not available

Unable to load historical scan data