Security Scan Report: cordicate.hostedrmm.com

Redirected to: https://cordicate.hostedrmm.com/WCC2/Home/Login?ReturnUrl=%2fWCC2%2f

Submitted: Jan 8, 2026, 7:09:07 PMCompleted: Jan 8, 2026, 7:11:11 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 1 HTTP transaction. The main domain is cordicate.hostedrmm.com and was registered NaN years ago.

Submitted URL: https://cordicate.hostedrmm.com

Effective URL: https://cordicate.hostedrmm.com/WCC2/Home/Login?ReturnUrl=%2fWCC2%2fRedirected

The Cisco Umbrella rank of the primary domain is #5,542 of the top 1 million websitesTop 10K Site

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Site hosts a credential‑harvesting login and links to a known malware file; treat as confirmed phishing scam.

Risk Factors
Malicious external link to a known malware file on s3.amazonaws.com
Hidden password field indicating attempt to harvest credentials covertly
Credential harvesting form on a domain unrelated to the legitimate brand
Presence of Indicators of Compromise combined with login form
Potential drive‑by download via malicious zip archive
Domain age information unavailable

Details

Page Title

Index

Scan Type

public

Language

🇺🇸

English

(55% confidence)

Category

documentation technical

(37%)

Domain Information

The domain name 'cordicate.hostedrmm.com' uses the commercial generic top-level domain (.com) and includes subdomain 'cordicate'. Count 9 characters in 'hostedrmm' with two vowels and seven consonants. Breaking it apart gives three words: hosted, r, mm. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://cordicate.hostedrmm.com

Page Load Overview

34.43s
Total Load Time
22
HTTP Requests
4
Domains
681 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:55%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:55%
Script Type:Latin
Text Length:468 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical37% confidence
Type: webapp
Method: ml+structural

All Detected Categories

documentation technical
37%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1134.204.89.12Ashburn, Virginia, United States
AS14618AMAZON-AES
11142.250.184.238United States
222--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E84283186CF26A151423B4F5B6F2E51C79D49107C200EE04B9EC86E65FD8DA98F73B9C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:4qqPxzblh1XJ1bPsmPBAu4XS6drwFvw0xX5DPNu6VEHUEfL1e/kO6FvEUS1SY0ML:81XJ1bPjZAu4i6O+0jt6HZfpe/kO6i17

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:12119:UQCCcpAgBWECCwQQtAaK8AgEBUAxJAg0BAvHjGMsGNcKjg4UHyYfAIlgYV4AiAIIJjGQOoKgIDoAgO0lwAYAFBYJIWwtBHAB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00c3c3ffffffff00
Perceptual Hash:ed6512125a4e6d79
Difference Hash:0896964618020030
Wavelet Hash:0040c0f00f0f0f00
Color Hash:#b3bf40

Other Hashes

Crop Resistant:0896964618020030

Scan History

Scan history not available

Unable to load historical scan data