Security Scan Report: ionos-outlook.web.app

Submitted: Sep 28, 2026, 1:52:36 PMCompleted: Sep 28, 2026, 1:53:26 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 65%

5
Risk Score

IONOS-branded webmail login text on a non-IONOS Firebase subdomain, but no form or credential capture was found. Suspicious brand mismatch; avoid entering any login details.

Risk Factors (3)
IONOS brand and webmail login wording used on a non-IONOS, third-party hosting subdomain
Hosted on a platform (web.app) where anyone can publish an instant subdomain, so the true page age is unknown
Generic placeholder title suggests an unfinished or template/staged page rather than a legitimate IONOS service
Safety Factors (5)
No credential, password, disguised-password or payment fields present (0 forms)
No JavaScript malware patterns (YARA), no known phishing kit, no high-precision YARA hits
No Indicators of Compromise matches against the page or its resources
No network IDS alerts and no cross-origin credential exfiltration
All JavaScript served from the site's own domain
Domain age information unavailable

Details

Page Title

Sample Background

Scan Type

public

Domain Name Analysis

Domain 'ionos-outlook.web.app' uses the application-focused generic top-level domain (.app) with subdomain 'ionos-outlook'. Its registrable label 'web' stretches across 3 characters holding one vowel versus two consonants. Tokenizing the label suggests 1 word: web. Median word length is three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ionos-outlook.web.app/

Page Load Overview

0.29s
Total Load Time
10 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:17 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
91--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B003E9268D467DC15B90BF93F1EC69DD1A2DE3DD6C820058867AAE94C50DFAC31C62DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:GHqz7FrHmdlr4tSRF654bDnPYi+fDCUeQ5v1FlCVVXcDjhSpqxgVLe:Hdh4PPYBBCVuDWc

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:38683:QCIIoggCUhgQIJAINUFhAUMPIiCYuVIsBAgcBSVIBcCJMwkeNWAIWwDIYyJUvTA7GoYBWDEFQQBAGmQZBCIpIEAgGKsC0Ern

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data