Security Scan Report: snip.ly

Redirected to: https://sinopeeditions.com/jhd/auth/?utm_source=sniply&utm_campaign=sniply&utm_medium=sniply

Site favicon
Submitted: Oct 30, 2025, 11:35:21 PMCompleted: Oct 30, 2025, 11:35:58 PMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 3 countries across 5 domains to perform 38 HTTP transactions. The main domain is sinopeeditions.com and was registered NaN years ago.

Submitted URL: https://snip.ly/CORREOS-POST

Effective URL: https://sinopeeditions.com/jhd/auth/?utm_source=sniply&utm_campaign=sniply&utm_medium=sniplyRedirected

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Phishing page impersonating Correos on an untrusted domain

Risk Factors
Brand impersonation on a non‑official, unranked domain
Use of a redirect service to hide the final suspicious domain
Mismatched domain vs. displayed brand creates phishing lure
Domain age information unavailable

Details

Page Title

Localizar envíos, oficinas y códigos postales| Correos.es

Scan Type

public

Language

🇪🇸

Spanish

(51% confidence)

Category

government public service

(59%)

Domain Information

Domain 'snip.ly' uses the Libyan country-code top-level domain (.ly) while skipping any subdomain. The core label 'snip' covers 4 characters containing one vowel alongside 3 consonants. Word splitting yields one word: snip. Most frequently, 'snip' shows up in Afrikaans. Usage also turns up in Sinhala and English contexts. Overall, 'snip.ly' reads as Afrikaans with single-word simplicity.

Screenshot

Security scan screenshot of https://snip.ly/CORREOS-POST

Page Load Overview

12.53s
Total Load Time
38
HTTP Requests
5
Domains
511 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:51%
Script Type:Latin
Text Length:792 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service59% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
59%
corporate business
47%
e-commerce shopping
44%
technology software
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8142.250.185.74United States
AS15169GOOGLE
2104.18.10.207United States
AS13335CLOUDFLARENET
2146.59.209.152France
AS16276OVH SAS
2104.20.47.26United States
AS13335CLOUDFLARENET
2104.16.174.226United States
AS13335CLOUDFLARENET
22a00:1450:4001:828::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
22606:4700::6812:bcfUnited States
AS13335CLOUDFLARENET
22606:4700::6812:acfUnited States
AS13335CLOUDFLARENET
22001:41d0:301::31France
AS16276OVH SAS
22606:4700::6810:aee2United States
AS13335CLOUDFLARENET
3816--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16C126F214CF9156F1182908ABE39AA2A7EC6800BC36B670531FD165E6F86D47CD73F6C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:sGpEztfIm74lU7eVdKvOejl7KvdLIzP5TllQO7:sAEzJg6OejlPlt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9770:TKwxIYy9AAICmIgMBhJggGQgAaoADCqkdCgoHRhQCAPSsmkQEP8hxAFwIghEUgpYA6alJCSWABhYAwARu4BUACFzGYgiwMhI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:08e7e7efe7e7e7e7
Perceptual Hash:f35f0e338c0c9927
Difference Hash:490c0c0c0c0c0c0c
Wavelet Hash:00e6e6e6c2c2c3e7
Color Hash:#ae87c5

Other Hashes

Crop Resistant:490c0c0c0c0c0c0c

Scan History

Scan history not available

Unable to load historical scan data