Summary
API
This website contacted 2 IPs in 1 country across 6 domains to perform 27 HTTP transactions. The main domain is icoremail.net and was registered 15 years ago.
Submitted URL: https://icoremail.net
The Cisco Umbrella rank of the primary domain is #215,705 of the top 1 million websites
AI Security Verdict
Moderate Risk
Confidence: 88%
The site impersonates Coremail and harvests credentials via a login form; treat as high‑risk phishing.
Risk Factors (3)
Safety Factors (4)
Details
Page Title
Coremail Professional Mail System
Scan Type
public
Domain Name Analysis
The domain 'icoremail.net' uses the network infrastructure generic top-level domain (.net) without a subdomain. The registrable portion 'icoremail' spans 9 characters holding five vowels versus 4 consonants. It segments into 3 words: i, core, mail. Median word length comes out to four characters. No strong language cues emerged from the frequency lists.
Screenshot

Page Load Overview
Language Analysis
Primary Language
Detection Details
Website Classification
Primary Category
All Detected Categories
Detected Features
Domain & IP Information
| Requests | IP Address | Location | AS Autonomous System |
|---|---|---|---|
| 14 | 223.252.214.114 | China | AS45062NetEase Building No.16 Ke Yun Road, |
| 13 | 59.111.192.182 | China | AS45062NetEase Building No.16 Ke Yun Road, |
| 27 | 2 | - | - |
Detected Technologies4
Content Similarity HashesFor malware variant detection
TLSH (Trend Micro Locality Sensitive Hash)
Specialized for malware detection and similarity analysis
ssdeep (Context Triggered Piecewise Hashing)
Detects similar content even with modifications
sdhash (Similarity Digest Hashing)
High-precisionHigh-precision similarity detection for forensic analysis
These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.
Image Hashes
Perceptual Hashes
Other Hashes
Scan History
Scan history not available
Unable to load historical scan data