Security Scan Report: emm113-emdd.mdbgo.io

Submitted: Dec 3, 2025, 2:32:42 PMCompleted: Dec 3, 2025, 2:33:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is emm113-emdd.mdbgo.io and was registered NaN years ago.

Submitted URL: https://emm113-emdd.mdbgo.io/

The Cisco Umbrella rank of the primary domain is #732,354 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High‑risk phishing page impersonating FedEx to steal credentials.

Risk Factors
Credential harvesting login form
Brand impersonation of FedEx on an unrelated domain
Low ranking domain for a well‑known brand
Domain age information unavailable

Details

Page Title

FedEx 登录

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

e-commerce shopping

(60%)

Domain Information

Within the British Indian Ocean Territory country-code top-level domain (.io), 'emm113-emdd.mdbgo.io' is registered with subdomain 'emm113-emdd'. Count 5 characters in 'mdbgo' with 1 vowel and 4 consonants. Tokenizing the label suggests 3 words: m, db, go. The median word length lands at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://emm113-emdd.mdbgo.io/

Page Load Overview

0.37s
Total Load Time
2
HTTP Requests
1
Domains
1 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:zh
Text Length:74 chars
Detector Agreement:100%
Language mismatch: Declared as zh but detected as en

Website Classification

Primary Category

e-commerce shopping60% confidence
Type: webapp
Method: ml+structural

All Detected Categories

e-commerce shopping
60%
government public service
37%
news media journalism
34%
adult content
30%
healthcare medical
26%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
293.105.88.216Wroclaw, Lower Silesia, Poland
AS50606Horyzont Technologie Internetowe sp.z.o.o.
21--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1054422B45EAB9D7846A0F1182798008BBEC056DB2404D9F0775E9AFEDBC4E30856D7F2

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:kdIztOQ9rSKAXA+5l0MM0r84lZn7C+pgZEjCf4vn30Ufybe3yuniWoW:k2sTA2syTn/pgZSCAvn30bC3j

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:278104:FgJoS6gEhIJgMkAgGgzwdwR8yESGQ1BRxCAAJEMjAklAocIA8SMBOHHDIVhW3IAWAKQEQugQYEwE9JZQGQmE4XEQADQZoGcg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff3e3c3c7f7f4141
Perceptual Hash:82df78edf95c5020
Difference Hash:90ccccf0dcd4a59f
Wavelet Hash:fe3e3c3c7f424101
Color Hash:#b96ce0

Scan History

Scan history not available

Unable to load historical scan data