Security Scan Report: msoid.take-charge.net

Redirected to:
https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_...
Site favicon
Submitted: Aug 25, 2026, 9:35:59 AMCompleted: Aug 25, 2026, 9:37:07 AMpubliccompleted

Summary

This website contacted 5 IPs in 4 countries across 6 domains to perform 2 HTTP transactions. The main domain is login.microsoftonline.com and was registered 5 years ago.

Submitted URL: https://msoid.take-charge.net

Effective URL: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=639232473616172963.YjU5NzA2ZDktZTE2Yy00MGU1LWIzMjgtNzRkMWRlYTU1MTQ4Yjc4OTNiZTEtMjUwNi00ZWUyLTlkNDgtYjg5MGNiNTY5Yzcy&ui_locales=en-US&mkt=en-US&client-request-id=1a4b968b-5fc3-4bc6-8141-ff6d974f9348&siwa=1&siwg=1&state=6bKNfEMWoG-unQZqmxRNQL5L9Caug47ZAs7Wysh5DtyWAswGRbf5uf4YTsjbU1Iv085BKQQLd477Z0bJ89TYHMS2zxTnsi78dROCCHaeoged20uO7Lc5xqOiZcwwfyS-rzlM4pLAUq99AZTMFkihpX9cMlbRVyX5DrQ5niTd7vVR_HIctdsoN_XAVHVbA3bwiTtRbEdA3JebDYleiIgzLXlx745FWUNMcpxi4TC99q3qzQj4e070ihtsgI-L2LVXJ9DBBcNQY4SJ9N8XBX-JGVQdZSy033eFk1eihO0xvvOVwUoAe5ahuz6V6zu4uwFctOVCryfxVeuV6vm50isElDeRqjoKtjER1VIyOR_Zl03NUU-QwoByX8mOMcpAZfJqvkBiV4aQGjKuKfqi-xa-Un_6nt2FieEZyO3zTXuxTt6EBZODo2WhsivwRfmAE_dI&x-client-SKU=ID_NET8_0&x-client-ver=8.16.0.0&sso_reload=trueRedirected

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

Phishing page impersonating Microsoft login, collects credentials on an unranked domain; treat as high‑risk and avoid interaction.

Risk Factors
Brand impersonation of Microsoft
Credential collection on non‑official domain
Unranked / low‑reputation domain
Highly obfuscated JavaScript
Cross‑origin form submission to Microsoft login endpoint
Safety Factors
Domain age is well established (24+ years)
No Indicators of Compromise or YARA malware matches
No network IDS alerts
Page served from an identity-provider sign-in endpoint (login.microsoftonline.com); a relying-party brand and login form here are normal SSO, not impersonation — risk clamped from 8 to 2
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(66%)

Domain Information

You're looking at domain 'msoid.take-charge.net' on the network infrastructure generic top-level domain (.net), featuring subdomain 'msoid'. Count 11 characters in 'take-charge' containing 4 vowels alongside 6 consonants, notching 1 hyphen. Tokenizing the label suggests 2 words: take, charge. The median word length lands at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://msoid.take-charge.net

Page Load Overview

0.99s
Total Load Time
23
HTTP Requests
6
Domains
470 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:196 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software66% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
66%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
720.190.159.0Azure · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
423.207.210.136Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
413.107.9.156Azure · CLOUDUnited States
AS8068Microsoft Corporation
440.126.31.2Azure · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
420.190.160.64Azure · CLOUDAmsterdam, North Holland, Netherlands
AS8075Microsoft Corporation
235--

Page Statistics

23
Requests
6
Unique Domains
486.8 KB
Total Size

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DB436DE63FC5381B8BC648B2D4BEBF06A67D05838844DC9DE29DC4884E7D7DA4967207

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:jc/6KN8GLG2NOlQRcQkyTIZ9Tjuokmap5vPoMLuBG:Q/6KN80OlQR6y2a/Aa

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:56322:4RCABBlbQmsZhgfCBOAMBATeoFAEJQEwCDjJAAhWg0eC4GRXgBjQAaHAMCkaQixGqADCtmISQcpgCgESqoT0EgxNhAiJEI0g

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00183933373f3737
Perceptual Hash:8559717666739989
Difference Hash:88f2d2e7e5dae6e6
Wavelet Hash:001839333f3f3737
Color Hash:#a4e06c

Other Hashes

Crop Resistant:88f2d2e7e5dae6e6

Scan History

Scan history not available

Unable to load historical scan data