Security Scan Report: daimleragemea.germany-2.evergage.com

Redirected to:
https://daimleragemea.germany-2.evergage.com/ui/login.html
Site favicon
Submitted: Aug 16, 2026, 8:21:23 PMCompleted: Aug 16, 2026, 8:22:33 PMpubliccompleted

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is daimleragemea.germany-2.evergage.com and was registered NaN years ago.

Submitted URL: https://daimleragemea.germany-2.evergage.com

Effective URL: https://daimleragemea.germany-2.evergage.com/ui/login.htmlRedirected

The Cisco Umbrella rank of the primary domain is #3,207 of the top 1 million websitesTop 10K Site

AI Security Verdict

Low Risk

Confidence: 85%

3
Risk Score

The site impersonates Salesforce login on an unrelated domain and collects credentials, indicating a high‑risk phishing attempt.

Risk Factors
Brand impersonation of Salesforce on unrelated domain
Credential collection forms (username/password)
Multiple redirects (2) to login page
Safety Factors
Well‑established domain (13+ years)
No malicious IoC or malware detections
No cross‑origin credential exfiltration observed
Top-ranked domain (Cisco Umbrella #3,207, 4921 days old) with no strong malicious indicators — a login form on a household-name site is normal; risk clamped from 7 to 3
Domain age information unavailable

Details

Page Title

Login | Salesforce Personalization

Scan Type

public

Language

🇺🇸

English

(45% confidence)

Category

technology software

(54%)

Domain Information

Domain 'daimleragemea.germany-2.evergage.com' uses the commercial generic top-level domain (.com); it also runs on subdomain 'daimleragemea.germany-2'. The core label 'evergage' covers 8 characters with four vowels and 4 consonants. Splitting it apart reveals two words: ever, gage. Expect 4 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://daimleragemea.germany-2.evergage.com

Page Load Overview

1.96s
Total Load Time
20
HTTP Requests
2
Domains
538 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:45%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:45%
Script Type:Latin
Text Length:4,014 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software54% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
54%
documentation technical
50%
real estate property
47%
corporate business
47%
government public service
43%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2063.185.160.43Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
201--

Page Statistics

20
Requests
2
Unique Domains
1.6 MB
Total Size

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11103842190F21952018687B436D59B4B3FF1D953C507582836FC2BE82FEFD839A672A7

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Y/7sXVbD8XFyF2X7sY77xEVCj6PDGle+RzRCq:ZXdyUMPoCuq80

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:41298:AjAUIpHFcRQSwrALFCAHBFSAYgGS0aQCEhArIDAsYBAQsGTw8uiLERgIKIiQFGZIQ8AKASuAVoRAIESig+MEJaRhEYxACgiI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fcf0f0f0f0f0f0f0
Perceptual Hash:e69949b2bcd2e1e0
Difference Hash:2060c42424a42524
Wavelet Hash:f0f0f0f0f0f0f0f0
Color Hash:#b387c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data