Security Scan Report: microsoftword.programgridsoft.com

Site favicon
Submitted: Sep 19, 2026, 12:45:16 PMCompleted: Sep 19, 2026, 12:45:38 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Brand-impersonation page posing as official Microsoft Word, offering a counterfeit 'Volume License' .exe for download from an unrelated domain, with a phishing threat-intel flag on the same host.

Risk Factors
Impersonation of Microsoft Word brand on a non-Microsoft domain
Distribution of an executable installer via unofficial channel
Single-source phishing threat-intel match on the primary domain
Excessive cross-domain redirects (6)
Unranked domain with negligible legitimacy signals
Domain age information unavailable

Details

Page Title

Microsoft Word

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'microsoftword.programgridsoft.com' is registered; it also runs on subdomain 'microsoftword'. Count 15 characters in 'programgridsoft' containing four vowels alongside eleven consonants. Word splitting yields three words: program, grid, soft. Average segment length settles at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://microsoftword.programgridsoft.com/?ysclid=mu7ymd4dpn786140927

Page Load Overview

1.78s
Total Load Time
102 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:2,264 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software57% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
57%
documentation technical
49%
corporate business
49%
government public service
47%
adult content
42%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4185.40.155.13Russia
AS21030Cluster LLC
287.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
277.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
287.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
104--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T107C2CC97A62355B97C23AD682BFB5F492264E003C505D9683ECC52C8CFB52F8DD9278C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:friFIzKMX/AZNEO5UaoYgdv6vbvHgvKRN3D8LW9POl91JDZ9t+DIxAfOcejuUA4u:fr4IWMPzID1ImfKiFYFtFTlDyFOkM8R9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:27588:FAgtC4hJCUBXswCDAGsFQAIYJJnKBy6ECSCEUSQJIiCsUCEBZCkIQIQZR4O0PQEEEABAMseVdCkYWlaYkwLgrkYDBgEQDIgG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fefed1c18191ffff
Perceptual Hash:ecd3916c93d16c92
Difference Hash:c000272b2b2786e0
Wavelet Hash:7efc90808181f37f
Color Hash:#bf9540

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data