Security Scan Report: teams.sharepoint.co.it

Submitted: Sep 29, 2026, 12:45:14 PMCompleted: Sep 29, 2026, 12:45:58 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 85%

5
Risk Score

Fake DocuSign/Microsoft SharePoint verification page on a deceptive non-Microsoft domain, with brand impersonation and obfuscated text built to evade scanning. Do not interact.

Risk Factors (5)
Impersonation of a different entity's brand (DocuSign/Microsoft) on a mismatched, non-official domain
Deceptive hostname mimicking 'sharepoint' under an unrelated co.it domain
Obfuscated page text with injected invisible characters designed to evade detection
Fake document-verification workflow prompting 'Continue to Microsoft' / code copying
Domain unranked in Cisco Umbrella and only 164 days old, inconsistent with the claimed brands
Safety Factors (1)
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 8 to 3
Domain age information unavailable

Details

Page Title

​​​

Scan Type

public

Domain Name Analysis

You're looking at domain 'teams.sharepoint.co.it' on the Italian country-code top-level domain (.co.it) with subdomain 'teams'. The registrable portion 'sharepoint' spans 10 characters split between four vowels and 6 consonants. Breaking it apart gives two words: share, point. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://teams.sharepoint.co.it/Kacoisv7yNfyOrlkuI7YwZh/t

Page Load Overview

5.30s
Total Load Time
152 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,343 chars
Detector Agreement:50%

Website Classification

Primary Category

documentation technical66% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
66%
healthcare medical
64%
cryptocurrency blockchain
52%
adult content
50%
technology software
45%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
591.92.41.68Bulgaria
AS211443Sino Worldwide Trading Limited
4192.178.170.95Google · CDNUnited States
AS15169Google LLC
4142.250.154.94Google · CDNUnited States
AS15169Google LLC
133--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T186B2C73262211A35643791E6F526B76D3122E21DF8474258BFDC9A71A3CFE73352E388

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:kmdepCHeCZtx3eIu6eeEMuvBLEGou9Sa1WNh60NHes2R4uJN:8IesLejeMGEieHR4G

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:25072:nycARxTGKATRAAACIvBgoiwLyQTEgYBnABaEQMsckjFYx4UFIaigRqYFZoiGsAIABQXTIpICCCJMBM0ojEEIpgEAhERwwQRb

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffef1818000000
Perceptual Hash:999ca61c9c3fb60c
Difference Hash:20001832b2300008
Wavelet Hash:ffffff5f18000000
Color Hash:#6640bf

Other Hashes

Crop Resistant:20001832b2300008

Scan History

Scan history not available

Unable to load historical scan data