Security Scan Report: sage.qbe-cloud.net

Redirected to: https://login.microsoftonline.com/3e32dd7c-41f6-492d-a1a3-c58eb02cf4f8/saml2?SAMLRequest=fZFPb4JAEMW%2FCtn78mcBwY3QIGhqYlOjtIdemnVZdBPYVWZp%2BvEr2Kb2UI%2BTefObeW9mwNrmRLPeHNVWnHsBxvpsGwV0bCSo7xTVDCRQxVoB1HC6y57WlNguPXXaaK4bZGUAojNSq1wr6FvR7UT3Ibl42a4TdDTmBNRxgB2Efd4LzBvdV7YSxhmZtoL6YYCu9UEqZBWXI6RiA%2B53uBl6dit5p0HXRqtGKmFz3Tq%2B8ElVRRwHXj3BwZRUmHnMxzyMxd4lvA7q2BncEGStigTJ6t2N8nzhRl4chu48nsd5mPv5MsyCPA6W07BYLgrvIgboxUqBYcokiLhkgl2CvbD0Ikoi6vtvyNp8RzCXqpLqcD%2Bv%2FVUE9LEsN3jzvCuR9So6GI1eBCidDXfScXF384f7WPYTPkr%2Fj3rm3KDTa%2FX37%2BkX&RelayState=-1621576945&SigAlg=http%3A%2F%2Fwww.w3.org%2F2001%2F04%2Fxmldsig-more%23rsa-sha256&Signature=hbRVcLE3LpYt8gCf6NQAjh2RTyHPunkTN75MYPRNQMiWr1BnM8aLUkRL8tFOX9kzT%2FATUqJooGT%2F4UqRVFcR9wuCQ3eiqN1Ycgo9xtc2DWwufHo4ljEdvMsPlyusyUuQSoMdD2Vw9cHhXCwUOZYtBmuZc74G0EJT62Ry5BDXUCNmXp8hIK7f66P%2FSQCJqdp0XKIUSx124oyidgQUZB0%2FJaCr8Pw98B8FDUxpekaa4O9hAd2iUB5dYCJ%2BGdoTIikae16uMtg9FTv4j3KG37Z%2FVb%2FpeQ0X4Y%2FAosiZYQnZn0FKhU01KAxmAV9vSFBW0T7S7bbI96yH0ty9SMx%2FLQHf%2BA%3D%3D&sso_reload=true

Site favicon
Submitted: Feb 15, 2026, 5:27:28 PMCompleted: Feb 15, 2026, 5:28:54 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://sage.qbe-cloud.net

Effective URL: https://login.microsoftonline.com/3e32dd7c-41f6-492d-a1a3-c58eb02cf4f8/saml2?SAMLRequest=fZFPb4JAEMW%2FCtn78mcBwY3QIGhqYlOjtIdemnVZdBPYVWZp%2BvEr2Kb2UI%2BTefObeW9mwNrmRLPeHNVWnHsBxvpsGwV0bCSo7xTVDCRQxVoB1HC6y57WlNguPXXaaK4bZGUAojNSq1wr6FvR7UT3Ibl42a4TdDTmBNRxgB2Efd4LzBvdV7YSxhmZtoL6YYCu9UEqZBWXI6RiA%2B53uBl6dit5p0HXRqtGKmFz3Tq%2B8ElVRRwHXj3BwZRUmHnMxzyMxd4lvA7q2BncEGStigTJ6t2N8nzhRl4chu48nsd5mPv5MsyCPA6W07BYLgrvIgboxUqBYcokiLhkgl2CvbD0Ikoi6vtvyNp8RzCXqpLqcD%2Bv%2FVUE9LEsN3jzvCuR9So6GI1eBCidDXfScXF384f7WPYTPkr%2Fj3rm3KDTa%2FX37%2BkX&RelayState=-1621576945&SigAlg=http%3A%2F%2Fwww.w3.org%2F2001%2F04%2Fxmldsig-more%23rsa-sha256&Signature=hbRVcLE3LpYt8gCf6NQAjh2RTyHPunkTN75MYPRNQMiWr1BnM8aLUkRL8tFOX9kzT%2FATUqJooGT%2F4UqRVFcR9wuCQ3eiqN1Ycgo9xtc2DWwufHo4ljEdvMsPlyusyUuQSoMdD2Vw9cHhXCwUOZYtBmuZc74G0EJT62Ry5BDXUCNmXp8hIK7f66P%2FSQCJqdp0XKIUSx124oyidgQUZB0%2FJaCr8Pw98B8FDUxpekaa4O9hAd2iUB5dYCJ%2BGdoTIikae16uMtg9FTv4j3KG37Z%2FVb%2FpeQ0X4Y%2FAosiZYQnZn0FKhU01KAxmAV9vSFBW0T7S7bbI96yH0ty9SMx%2FLQHf%2BA%3D%3D&sso_reload=trueRedirected

The Cisco Umbrella rank of the primary domain is #385,068 of the top 1 million websites

AI Security Verdict

Safe Website

Confidence: 90%

1
Risk Score

Legitimate Microsoft SSO redirect; no security concerns detected.

Safety Factors
Well‑established domain age (>20 years)
Final destination is a legitimate Microsoft login service
No malicious Indicators of Compromise
No JavaScript malware detected
No external malicious links
Domain age information unavailable

Details

Page Title

sage.qbe-cloud.net

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Domain 'sage.qbe-cloud.net' uses the network infrastructure generic top-level domain (.net), featuring subdomain 'sage'. The registrable portion 'qbe-cloud' spans 9 characters split between 3 vowels and 5 consonants, along with 1 hyphen. Tokenizing the label suggests 3 words: q, be, cloud. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sage.qbe-cloud.net

Page Load Overview

9.09s
Total Load Time
19
HTTP Requests
5
Domains
409 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:129 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1954.38.64.199France
AS16276OVH SAS
191--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F3048F773296063985558498F05B43099F20B143F50AC9BCB9BCBAD9BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ufQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIszS2bMy8Oldu:dhoC9JSqzzbs6o3Sj3gcrs+2eAc

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:184481:gwFOEKgFoC1nFQAGAFs3BBBSRCQhgoAjCEtEQA6GDGHQMtCEukgCSBBIEjzoB0RREATJEggJxIUChCRSGVBTxDoBDAAWahoA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfc3c7ffffffff
Perceptual Hash:b3318ccccc673333
Difference Hash:00180c1400000000
Wavelet Hash:3f1f030f00000000
Color Hash:#bec587

Other Hashes

Crop Resistant:00180c1400000000

Scan History

Scan history not available

Unable to load historical scan data