Security Scan Report: legalgentoo.icasework.com

Redirected to: https://login.microsoftonline.com/40d8f26a-4584-466e-9fee-b7a28c4c7cbc/oauth2/v2.0/authorize?response_type=code&scope=openid+email+profile+offline_access&client_id=917aae32-8be7-4a3e-aca4-ab5b8ce4af04&redirect_uri=https%3A%2F%2Flegalgentoo.icasework.com%2Flogin&state=legalgentoo%40g25tgju3spjk3muisdfvln9e07%40https%3A%2F%2Flogin.microsoftonline.com%2F40d8f26a-4584-466e-9fee-b7a28c4c7cbc%2Fv2.0%2F.well-known%2Fopenid-configuration&nonce=gkvkfgtnb14kcvpbn5s6iutrod&sso_reload=true

Site favicon
Submitted: Jan 8, 2026, 9:17:25 AMCompleted: Jan 8, 2026, 9:18:34 AMpubliccompleted
Loading additional data...

Summary

This website contacted 11 IPs in 1 country across 7 domains to perform 47 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://legalgentoo.icasework.com

Effective URL: https://login.microsoftonline.com/40d8f26a-4584-466e-9fee-b7a28c4c7cbc/oauth2/v2.0/authorize?response_type=code&scope=openid+email+profile+offline_access&client_id=917aae32-8be7-4a3e-aca4-ab5b8ce4af04&redirect_uri=https%3A%2F%2Flegalgentoo.icasework.com%2Flogin&state=legalgentoo%40g25tgju3spjk3muisdfvln9e07%40https%3A%2F%2Flogin.microsoftonline.com%2F40d8f26a-4584-466e-9fee-b7a28c4c7cbc%2Fv2.0%2F.well-known%2Fopenid-configuration&nonce=gkvkfgtnb14kcvpbn5s6iutrod&sso_reload=trueRedirected

The Cisco Umbrella rank of the primary domain is #185,440 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Phishing login page collecting credentials; likely malicious.

Risk Factors
Credential harvesting form on unrelated domain
Redirect to external authentication service
Low Cisco Umbrella ranking for domain presenting a login page
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'legalgentoo.icasework.com' uses the commercial generic top-level domain (.com), featuring subdomain 'legalgentoo'. Count 9 characters in 'icasework' with 4 vowels and 5 consonants. Breaking it apart gives two words: i, casework. Median word length is 4.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://legalgentoo.icasework.com

Page Load Overview

1.48s
Total Load Time
2
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:161 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
213.69.239.68United Kingdom
020.190.160.128United Kingdom
051.11.192.49United Kingdom
013.134.0.81City of London, England, United Kingdom
AS16509AMAZON-02
013.107.246.44United Kingdom
023.207.210.137United Kingdom
020.190.159.131United Kingdom
020.190.160.3United Kingdom
013.41.174.6City of London, England, United Kingdom
AS16509AMAZON-02
040.126.31.73United Kingdom
211--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16F735ADA7EA31937C24685B6B5B93E02AE7A98038C4CCDB4F15CC9842FFA64D8177153

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:lGCcyCTL8GLGGZCTPQfCj3NIzzTEyqU6MVnvnaloMPbJE7JoiGC:cjycL8ucPQfi9ImyS2cC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:78117:YRQP0HBNUsoRgAkaAECvAEsAsBiG7JA2CKtMgCIASAQEEMBNkOkEABYEIBOHwAvAWwYDLiDVE0I4FoThgqQUI4AQPGCCGgAe

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:9cd963364cc999cc
Difference Hash:0420b2333332cc21
Wavelet Hash:c0c0989818180001
Color Hash:#ac9d53

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data