Security Scan Report: mail.leciano.ch

Submitted: Sep 14, 2026, 1:47:30 AMCompleted: Sep 14, 2026, 1:47:50 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 75%

7
Risk Score

Single-source ThreatFox Unknown malware match on the primary domain forces HIGH_RISK. The page itself has no credential or payment forms; treat as risky until the malware Indicator of Compromise is independently verified.

Risk Factors (2)
Primary domain has a single-source, unverified content-malware Indicator of Compromise match for Unknown malware.
Human-verification interstitial with unusual-activity wording could be used to gate or redirect users, especially alongside a malware Indicator of Compromise.
Domain age information unavailable

Details

Page Title

Massanzüge & Massschuhe nach Mass – Zürich | LECIANOsecondary capture

Scan Type

public

Domain Name Analysis

Within the Swiss country-code top-level domain (.ch), 'mail.leciano.ch' is registered and includes subdomain 'mail'. The second-level label 'leciano' is 7 characters long holding four vowels versus 3 consonants. It segments into three words: le, cia, no. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mail.leciano.ch

Page Load Overview

0.64s
Total Load Time
5 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:32%
Script:Latin
Direction:ltr

Detection Details

Text Length:168 chars
Detector Agreement:50%

Website Classification

Primary Category

healthcare medical43% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

healthcare medical
43%
documentation technical
42%
government public service
38%
news media journalism
35%
cryptocurrency blockchain
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2104.18.41.175Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
0185.178.193.161Switzerland
AS207143hosttech GmbH
0149.126.4.108Switzerland
AS47302cyon AG
23--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A703B873E481B83B51270BF6B6562BB5F0FA4149CB325510E3FD439A83EBD84A913A1D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:geuC02g6Bkwl5iNViVc98SX1IUy7S6ja9GmdhYvQIv0qk/5qZ0dOq7+p3bzV/3c:k2gR9iVc9B1IUy7S6G9Gmdhrxqk/5qZC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:39557:lBEgYCEBEamMCIin8BGYDA4ChSBzgEXQMgUkrgEAQQFxICvKxYA4BECASRGcABLFsUAAIDKh4wCjwNBgAiLSHZEQR+UBMBEU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:03f1b19939190101
Perceptual Hash:8ee533cc9c33358c
Difference Hash:e6676531b1f1c9c5
Wavelet Hash:03f1f3bffd190101
Color Hash:#c5878c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data