Security Scan Report: rogmar.com.mx

Site favicon
Submitted: Sep 27, 2026, 4:27:23 AMCompleted: Sep 27, 2026, 4:27:58 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 93%

9
Risk Score

Fake Roundcube webmail login hosted in /images/ on rogmar.com.mx, carrying a victim email token ([email protected]) that mismatches the host domain — a credential-harvesting phishing page.

Risk Factors (5)
Email-in-URL phishing lure with victim domain (domaindb.com) mismatched from hosting domain (rogmar.com.mx)
Credential (email + password) login form on a mismatched, unauthorized context
Impersonation of Roundcube webmail service on a non-affiliated host
Login page hosted in a /images/ directory, characteristic of compromised-site phishing injection
Domain is a 21-year-old business domain with no webmail reputation, indicating likely compromise for phishing hosting
Domain age information unavailable

Details

Page Title

Roundcube Webmail : Welcome to ....

Scan Type

public

Domain Name Analysis

You're looking at domain 'rogmar.com.mx' on the Mexican country-code top-level domain (.com.mx). Its registrable label 'rogmar' stretches across 6 characters split between 2 vowels and 4 consonants. Breaking it apart gives 2 words: rog, mar. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://rogmar.com.mx/images/Roundcube.html#support@domaindb.com

Page Load Overview

1.95s
Total Load Time
310 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:280 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software47% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
47%
documentation technical
45%
phishing scam
41%
news media journalism
34%
adult content
34%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9192.185.183.192Ashburn, Virginia, United States
AS31898Oracle Corporation
894.136.171.57United Kingdom
AS42831UK Dedicated Servers Limited
172--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14632D79264044E771A7340E4BAFFE64C62FA411BDA10DC44B8FDB0586F98F5531B239E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:uc4D3Y986KJoybwgqYwNDGFAol7ZGTI/FtUGeisvGsSnClRzQfRhS+ScJPF6Eo9A:j4D3Y9jEoybbw1cl7ZGTOdBzZl4A

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11711:CPWgpZcQEVCgCuAwhZzKBcAoADAQVhAACoCUFsCihCQKeQoYwYIo8uYAgdgaYCU5hCwAxgA0NBLuYEurQaKyUJXBUE45AAsA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7e7ffffffff
Perceptual Hash:b333cccc4c6699cc
Difference Hash:00080c0c00000000
Wavelet Hash:ffe7e7e700000000
Color Hash:#4d783a

Other Hashes

Crop Resistant:00080c0c00000000

Scan History

Scan history not available

Unable to load historical scan data