Security Scan Report: ems.directcompanies.com

Redirected to:
https://ems.directcompanies.com/#/signin
Site favicon
Submitted: Jul 27, 2026, 5:06:37 AMCompleted: Jul 27, 2026, 5:07:53 AMpubliccompleted

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 2 HTTP transactions. The main domain is ems.directcompanies.com and was registered 19 years ago.

Submitted URL: https://ems.directcompanies.com

Effective URL: https://ems.directcompanies.com/#/signinRedirected

AI Security Verdict

Low Risk

Confidence: 80%

3
Risk Score

The site impersonates the FortiClient brand without collecting credentials, leading to a high-risk classification.

Risk Factors
Brand impersonation of a different entity
Unranked domain reputation
Safety Factors
No forms collecting credentials or payments
No malicious JavaScript or network indicators
Domain has long registration history
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 7 to 3
Domain age information unavailable

Details

Page Title

FortiClient Endpoint Management Server

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(72%)

Domain Information

You're looking at domain 'ems.directcompanies.com' on the commercial generic top-level domain (.com) and includes subdomain 'ems'. Count 15 characters in 'directcompanies' split between 6 vowels and 9 consonants. Splitting it apart reveals two words: direct, companies. Expect 7.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ems.directcompanies.com

Page Load Overview

4.06s
Total Load Time
17
HTTP Requests
1
Domains
140 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:256 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software72% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
72%
documentation technical
42%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
17216.12.182.7United States
AS18817Midcontinent Communications
171--

Page Statistics

17
Requests
1
Unique Domains
1.5 MB
Total Size

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T132E18840D8510081BC97C8AFBCA1F389BB05A4C3CB1D8EF9B5AC5964BFC9AAAD1D1604

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:uf97JX8JfaqJfsoQhgIq9/qYeKfagf15Y7Yj:a/mi2Vnf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:7299:AGg8IKGFBAhsgpEILBAYCgRgQxBQ4LAcRbSyFjaIEYCEcRwISVAEASJFShdAEEEAAhAwlkCElBHQdQFAIQgAWBQjEDIgMDQo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffe7e7ffff
Perceptual Hash:e659596666196666
Difference Hash:b20412124c0c1008
Wavelet Hash:000fcfcfc0c0c0c0
Color Hash:#bf6e40

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data