Security Scan Report: mail.mfa.gov.kg

Redirected to:
https://mail.mfa.gov.kg/static/login/
Submitted: Sep 26, 2026, 6:42:49 PMCompleted: Sep 26, 2026, 6:43:27 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 68%

2
Risk Score

Legitimate-looking government webmail login (mail.mfa.gov.kg, Carbonio Client) on its own domain. Same-origin login form, no impersonation, no malware or threat-intel hits. Unknown domain age and unranked status are neutral, not risk evidence.

Safety Factors (4)
Official government domain (mfa.gov.kg) with a matching mail subdomain
Login form is same-origin (posts to its own domain), standard webmail pattern
No threat-intelligence, JavaScript-malware, network-IDS, or behavioral indicators detected
Page presents its own service name ('Carbonio Client') rather than impersonating a third party
Domain age information unavailable

Details

Page Title

Carbonio Client

Scan Type

public

Domain Name Analysis

The domain name 'mail.mfa.gov.kg' uses the Kyrgyz country-code top-level domain (.gov.kg); it also runs on subdomain 'mail'. The second-level label 'mfa' is 3 characters long holding 1 vowel versus 2 consonants. Tokenizing the label suggests 1 word: mfa. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mail.mfa.gov.kg/

Page Load Overview

2.82s
Total Load Time
1.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:104 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service52% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
52%
government
48%
documentation technical
26%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
17185.229.36.81Kyrgyzstan
AS39659State institution Kyzmat under the Office of the President of the Kyrgyz Republic
171--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F9424CB31B052035A313C0DD74F1AB19A61FF3074977CD0DF87DA668E2D8C69AA9385A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:fKMzEDjFSkjfs6tasjVcrJere85R6VkGRNDuGFsZLrgwWlI:fKM8xjjfsHqVcNyHQ31uGFsZLMwW6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13115:SKeGFkkBhgUKICjKUyJaBIENjXOKQgMDGgxAHRlQAiKI0jBswEARQACAIUJgYEKWTHYxv5IQFBieDW3yghwrNEFQoacENaqC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00e0fbfbf9e06000
Perceptual Hash:e0bd1f520fe1d017
Difference Hash:6994929393908778
Wavelet Hash:00e4fbfbfbf0e000
Color Hash:#a253ac

Scan History

Scan history not available

Unable to load historical scan data