Security Scan Report: teamliftss.com

Site favicon
Submitted: Sep 17, 2026, 10:50:08 AMCompleted: Sep 17, 2026, 10:50:28 AMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 85%

3
Risk Score

Fake Microsoft sign-in page on teamliftss.com using genuine Microsoft login assets and 'verify your account' pressure to harvest account passwords. Do not enter credentials.

Risk Factors
Impersonation of Microsoft account login on a non-Microsoft domain
Password-only credential form with no username field (harvesting pattern)
Microsoft login CDN resources loaded from a third-party host
Urgency/'verify your account' messaging to force credential entry
Contact link has no destination ('#') and no legitimate terms/privacy ownership
Safety Factors
Domain is well established (registered 2005), suggesting a compromised or hijacked host rather than a newly registered phishing domain
No Indicators of Compromise matches against the page or its resources
No JavaScript malware (YARA) patterns detected
No cross-origin credential exfiltration detected in captured JS behavior
No payment fields present
Top-ranked domain (Cisco Umbrella #0, 7765 days old) with no strong malicious indicators — a login form on a household-name site is normal; risk clamped from 8 to 3
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Domain Name Analysis

The domain name 'teamliftss.com' uses the commercial generic top-level domain (.com) with no subdomain. Count 10 characters in 'teamliftss' holding 3 vowels versus 7 consonants. Segmentation suggests three words: team, lifts, s. Average segment length settles at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://teamliftss.com/zz/index.html

Page Load Overview

1.64s
Total Load Time
260 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:452 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software28% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1108.167.183.47Ashburn, Virginia, United States
AS31898Oracle Corporation
1142.251.20.95Google · CDNUnited States
AS15169Google LLC
1151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1104.18.10.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.13.95Google · CDNUnited States
AS15169Google LLC
1104.21.27.152Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1172.217.116.4Google · CDNUnited States
AS15169Google LLC
1146.75.120.193Fastly · CDNFrankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1195.80.159.133France
AS29152Decknet SARL
1616--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1ABC0808F5C58C81F595059C0E8D1B57E543572653600CFDDE9E00074BD747DC4C15440

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3:PouVWJhquHbs+MkAqRAdu6/GYlWX/uhmHT8NWQAlKPUQAXjdHbZNGXI9kBbZWM:h4hqIY+AqJmW/lHT8NWQAlKPUQyrNVuZ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:9bba5111713973fa5a07e71c122eac22

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f0f8fc9a992b4d2f
Perceptual Hash:c9cc43662764d733
Difference Hash:e2b0b03251c399d8
Wavelet Hash:f0f8fc988929452f
Color Hash:#ac537e

Other Hashes

Crop Resistant:e2b0b03251c399d8

Scan History

Scan history not available

Unable to load historical scan data