Security Scan Report: it-corp.netlify.app

Redirected to:
https://it-corp.netlify.app/
Submitted: Sep 19, 2026, 12:45:08 AMCompleted: Sep 19, 2026, 12:45:26 AMpubliccompleted

This website contacted 2 IPs in 2 countries across 2 domains to perform 7 HTTP transactions. The main domain is it-corp.netlify.app and was registered 16 years ago.

Submitted URL: http://it-corp.netlify.app/

Effective URL:

https://it-corp.netlify.app/
Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Fake Zimbra login on a Netlify subdomain collects username/password and sends them to an external form endpoint, impersonating Zimbra. Avoid and report.

Risk Factors
Brand impersonation of Zimbra on a mismatched domain
Credential harvesting via password field
Cross-origin credential form submission to an external service
Hosted on a shared Netlify subdomain with unknown actual age
Domain age information unavailable

Details

Page Title

Zimbra Web Client Sign In

Scan Type

public

Domain Name Analysis

You're looking at domain 'it-corp.netlify.app' on the application-focused generic top-level domain (.app) with subdomain 'it-corp'. The core label 'netlify' covers 7 characters with two vowels and five consonants. Breaking it apart gives three words: net, li, fy. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://it-corp.netlify.app/

Page Load Overview

0.66s
Total Load Time
182 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:738 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software64% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
64%
corporate business
39%
documentation technical
32%
government public service
28%
social_media
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
435.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
393.94.224.225Netherlands
AS25151Cyso Group B.V.
72--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T128B2D86625E518610AA370FC59CF111934B49C2B1009CE087DFC92A83FB5E7A56A7BFE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:gKejhRgFO3nhkxUT4OmYXhl2Ei0m5HDpupShi4i2iZi5iFieigiMiniHiNJci8i5:ajD3nhkxUT4Om6tc/oVHgA0v9BiCNJRr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:23906:HIECcERMCEIGCeiYkci54FIhFxCESICtERDCCV0AQi1kb6GQ5ANRwKgoGEgGIBgAGMBKlnAgpTwAB+CLvhDAHJPVOQERM4OF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:99da26f689a4d923
Difference Hash:504cb2b2b232cef3
Wavelet Hash:f07cfeff1f980000
Color Hash:#863a2d

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data