Security Scan Report: zebra.us-1.evergage.com

Redirected to:
https://zebra.us-1.evergage.com/ui/login.html
Site favicon
Submitted: Aug 9, 2026, 8:34:06 PMCompleted: Aug 9, 2026, 8:35:16 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is zebra.us-1.evergage.com and was registered NaN years ago.

Submitted URL: https://zebra.us-1.evergage.com

Effective URL: https://zebra.us-1.evergage.com/ui/login.htmlRedirected

The Cisco Umbrella rank of the primary domain is #3,207 of the top 1 million websitesTop 10K Site

AI Security Verdict

Low Risk

Confidence: 84%

3
Risk Score

The site impersonates Salesforce and harvests login credentials, posing a high‑risk phishing threat.

Risk Factors
Brand impersonation of Salesforce on unrelated domain
Credential collection forms without legitimate affiliation
Cross‑origin resources only from cdn.evergage.com (no exfiltration detected)
Safety Factors
Domain age >10 years and reputable Cisco Umbrella ranking (top 10K)
No malicious JavaScript or network alerts
No payment fields or known malware kits
Top-ranked domain (Cisco Umbrella #3,207, 4914 days old) with no strong malicious indicators — a login form on a household-name site is normal; risk clamped from 8 to 3
Domain age information unavailable

Details

Page Title

Login | Salesforce Personalization

Scan Type

public

Language

🇺🇸

English

(47% confidence)

Category

technology software

(56%)

Domain Information

You're looking at domain 'zebra.us-1.evergage.com' on the commercial generic top-level domain (.com); it also runs on subdomain 'zebra.us-1'. The registrable portion 'evergage' spans 8 characters containing four vowels alongside 4 consonants. Tokenizing the label suggests two words: ever, gage. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://zebra.us-1.evergage.com

Page Load Overview

3.18s
Total Load Time
21
HTTP Requests
2
Domains
544 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:47%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:47%
Script Type:Latin
Text Length:4,023 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software56% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
56%
documentation technical
53%
real estate property
51%
corporate business
46%
government public service
44%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2150.16.4.97Aws · CLOUDAshburn, Virginia, United States
AS14618Amazon.com, Inc.
211--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13A03842590F21952018287B436D99B4B3FF1D953C507582836FC2BE82FEFDC399672A6

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Y/7sXVbD8XFyF2X7BY77xEVCj6PDGle+RzRCp:ZXdyUMGoCuq8z

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:41297:2H4ACAACJAQA2kgCIICRh2kAcoCARDUmUFECAAC0iAdZIAgjLKEAQAwAhEgZjMEK0IEWzgyHsjAZGDAEFEoIAbSCRgQCI4/b

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcf0f0f0f0f0f0f0
Perceptual Hash:e6994992bcd2e1e4
Difference Hash:2060c42424a42524
Wavelet Hash:f0f0f0f0f0f0f0f0
Color Hash:#acbf40

Scan History

Scan history not available

Unable to load historical scan data