Security Scan Report: canada-post.xyz

Redirected to: https://www.canadapost-postescanada.ca/cpc/en/home.page

Site favicon
Submitted: Jan 17, 2026, 7:40:41 AMCompleted: Jan 17, 2026, 7:42:08 AMpubliccompleted
Loading additional data...

Summary

This website contacted 13 IPs in 2 countries across 16 domains to perform 125 HTTP transactions. The main domain is canadapost-postescanada.ca and was registered NaN years ago.

Submitted URL: https://canada-post.xyz/

Effective URL: https://www.canadapost-postescanada.ca/cpc/en/home.pageRedirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing site impersonating Canada Post with credential‑stealing form – high risk.

Risk Factors
Brand impersonation on an unranked, non‑official domain
Credential harvesting form (password field) present
Multiple redirects to a mismatched final URL
Domain name does not match official Canada Post branding
Domain age information unavailable

Details

Page Title

Mailing and shipping for Personal and Business | Canada Post

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(50%)

Domain Information

Domain 'canada-post.xyz' uses the open generic top-level domain (.xyz) with no subdomain. Its registrable label 'canada-post' stretches across 11 characters holding four vowels versus 6 consonants, along with one hyphen. It segments into 2 words: canada, post. Average segment length settles at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://canada-post.xyz/

Page Load Overview

6.87s
Total Load Time
157
HTTP Requests
25
Domains
4.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:13,879 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service50% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
50%
finance banking
44%
social_media
25%
finance/banking
25%
forum
20%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1323.58.109.51Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
1263.140.62.139United States
1223.52.181.12Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
12104.17.208.240United States
AS13335CLOUDFLARENET
1252.30.233.34Unknown
12104.18.86.42United States
AS13335CLOUDFLARENET
12172.67.134.211Unknown
122.16.168.112Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
12146.75.121.140Frankfurt am Main, Hesse, Germany
AS54113FASTLY
1223.45.111.175Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
15713--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T140949228C5F03C3B115A62B4FD245D09AA11652BDD893C05BBDE27AC2F4DB4F4E72A2D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:RjS4/SOjNRE8Og5kpX75fyoVbxs+hkjXbtiyiKsMIDWrHIFI/iHRREwATYUBxDbU:dS4fOPgFiKciDBx18tZ6+x

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:437582:gwCCpBRQD4g0AAYdIJVl3CwAbARApCASkaDQ+AXgjYMoFFAFDUENAKJRLKjiDKoUFGYsJCGIMCYDABkJIB/QZQANOlCKyr5Z

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:9883030d18fff7f7
Perceptual Hash:bf1be4c85966430d
Difference Hash:61565e7971552464
Wavelet Hash:0003070c1cfff7f7
Color Hash:#af87c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data