Security Scan Report: correosdecr.web.app

Submitted: Jul 9, 2026, 12:52:12 AMCompleted: Jul 9, 2026, 12:53:33 AMpubliccompleted

Summary

This website contacted 2 IPs in 2 countries across 3 domains to perform 12 HTTP transactions. The main domain is correosdecr.web.app and was registered 7 years ago.

Submitted URL: https://correosdecr.web.app/

AI Security Verdict

Moderate Risk

Confidence: 82%

5
Risk Score

The site impersonates the Correos brand, uses an unknown-age .web.app subdomain, and harvests personal shipping data – high risk of phishing.

Risk Factors
Brand impersonation on unknown-age subdomain
Hosting platform subdomain (.web.app) with no reputation
Unranked domain in Cisco Umbrella
Safety Factors
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 7 to 5
Domain age information unavailable

Details

Page Title

Correos

Scan Type

public

Language

🇪🇸

Spanish

(51% confidence)

Category

unknown

(0%)

Domain Information

The domain 'correosdecr.web.app' uses the application-focused generic top-level domain (.app) with subdomain 'correosdecr'. The core label 'web' covers 3 characters with one vowel and 2 consonants. Segmentation suggests one word: web. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of correosdecr.web.app

Page Load Overview

3.65s
Total Load Time
12
HTTP Requests
3
Domains
144 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:51%
Script Type:Latin
HTML Lang Attribute:en
Text Length:506 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as es

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
651.77.64.70Germany
AS16276OVH SAS
6199.36.158.100United States
AS54113Fastly, Inc.
122--

Page Statistics

12
Requests
3
Unique Domains
145.0 KB
Total Size

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13A7234B09221519D4EE7EDA0A9E27F0A30A6CDE7F58FCADC659C089D1FC5BA5C4D0290

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:h/0h+37JXGpf9wSXaD8N//p+mt+6GR+3JtwyWqzbyym9laLvtFM4XMQF4esMGMPu:h/A+dyLXp/MR+3JSyy4FspMzZMAQ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:16598:EBCIJQgzd4cqD2iHBRgKvsY0cQSQKMISAVAGDAUZpQhCbBCRCBACQBgkM7mABCUlsiwA0PbAISU6AYswYm4LVSaQDlkQFWSN

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7e00dbdfffffff00
Perceptual Hash:dc5443c398bce3e1
Difference Hash:80e02234300a0611
Wavelet Hash:0000909fffffff00
Color Hash:#ac5384

Other Hashes

Crop Resistant:80e02234300a0611

Scan History

Scan history not available

Unable to load historical scan data