Security Scan Report: wlsk.s3.us-east-1.amazonaws.com

Submitted: Oct 24, 2025, 4:50:12 PMCompleted: Oct 24, 2025, 4:51:45 PMpubliccompleted
Loading additional data...

Summary

This website contacted 11 IPs in 1 country across 2 domains to perform 4 HTTP transactions. The main domain is wlsk.s3.us-east-1.amazonaws.com.

Submitted URL: https://wlsk.s3.us-east-1.amazonaws.com/mmma.html

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Page impersonates Microsoft on a suspicious S3 domain – high‑risk phishing.

Risk Factors
Brand impersonation on an unranked, non‑official domain
Hosted on cloud storage (Amazon S3) without any legitimate Microsoft association
Unusual domain structure (s3.amazonaws.com) used for a Microsoft‑branded page
OCR text shows misspelled 'Microsott' and fake security verification
Domain age information unavailable

Details

Page Title

Microsoft Secure Document Sharing - Security Verification

Scan Type

public

Language

🇺🇸

English

(55% confidence)

Category

unknown

(0%)

Domain Information

Within the commercial generic top-level domain (.com), 'wlsk.s3.us-east-1.amazonaws.com' is registered with subdomain 'wlsk.s3.us-east-1'. Count 9 characters in 'amazonaws' containing 4 vowels alongside five consonants. Breaking it apart gives three words: amazon, aw, s. Expect two characters per word on average. The linguistic tilt is Czech for 'amazonky'. It also appears in Slovak and Croatian contexts.

Screenshot

Security scan screenshot of https://wlsk.s3.us-east-1.amazonaws.com/mmma.html

Page Load Overview

16.10s
Total Load Time
4
HTTP Requests
2
Domains
6 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:55%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:55%
Script Type:Latin
Text Length:267 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
416.182.32.2Ashburn, Virginia, United States
AS16509AMAZON-02
0172.232.169.104Tukwila, Washington, United States
AS63949Akamai Connected Cloud
052.216.215.106Ashburn, Virginia, United States
AS16509AMAZON-02
052.217.229.162Ashburn, Virginia, United States
AS16509AMAZON-02
052.216.32.226Ashburn, Virginia, United States
AS16509AMAZON-02
052.217.66.104Ashburn, Virginia, United States
AS16509AMAZON-02
03.5.13.234United States
AS14618AMAZON-AES
054.231.171.114Ashburn, Virginia, United States
AS16509AMAZON-02
054.231.172.34Ashburn, Virginia, United States
AS16509AMAZON-02
052.216.44.18Ashburn, Virginia, United States
AS16509AMAZON-02
411--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D7B17517556A10116693F0B87BA3B3482B699903A10B9A1C3ECC1688DFCEF85D9F73DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:KosY0nzPg6yZ6DVnfAtsyUShhZ8ExYsL/pkz4iN8TMgK3yJOFoijmi+9z4:KY0zPg6yZ6DVf2syUShhZo4/Oz4iN8T4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5551:GmI4ABXQAXO4QJAHGQQMACQAAgAUAAOAAEgAEhFrKwBCAJEACBGKphKEMQACwSYIAIBAQQEkAJVUcBEiqBDuUMMQKjIOEICY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7e7e7e7e7ff
Perceptual Hash:b366cc9998663333
Difference Hash:00080c0c0c0c0c00
Wavelet Hash:f8e0c4c0c0e4e4fc
Color Hash:#6ce096

Other Hashes

Crop Resistant:00080c0c0c0c0c00

Scan History

Scan history not available

Unable to load historical scan data