Security Scan Report: secure-server-page--microsoftteam0.replit.app

Submitted: Jul 29, 2026, 2:50:07 PMCompleted: Jul 29, 2026, 2:51:15 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 2 HTTP transactions. The main domain is secure-server-page--microsoftteam0.replit.app and was registered NaN years ago.

Submitted URL: https://secure-server-page--microsoftteam0.replit.app/

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Phishing page that harvests Microsoft credentials and sends them to an external server; high confidence of scam.

Risk Factors
Credential exfiltration to external server
Brand impersonation of Microsoft
Login forms on unranked/replit subdomain
Cross‑origin POST to api.ipify.org
Domain age information unavailable

Details

Page Title

Sign in to your Microsoft account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(52%)

Domain Information

The domain 'secure-server-page--microsoftteam0.replit.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'secure-server-page--microsoftteam0'. The second-level label 'replit' is 6 characters long split between two vowels and 4 consonants. Tokenizing the label suggests two words: rep, lit. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://secure-server-page--microsoftteam0.replit.app/

Page Load Overview

0.47s
Total Load Time
2
HTTP Requests
2
Domains
12 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:743 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software52% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
52%
government public service
29%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
134.117.33.233Google · CDNKansas City, Missouri, United States
AS396982Google LLC
135.190.3.23Google · CDNKansas City, Missouri, United States
AS396982Google LLC
22--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17CB2305636F704126943E5B837E7A30A3325D403990BC9183FAC57988FD7ECAA9637C9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:TlITOFAonT7MnmSlatckBwnfgbXdMq1pEu:TdFR1SlvklpEu

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24677:MABCQsQLAAEQQYmepAxAkQELRKAYEHeGAkAwkgGgdJIit0Afkh4BsgQBmRD5MMYFXX8IKIgUCmgBIMgIkxETIIKaPUkagBID

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1f1f1f192539f9ff
Perceptual Hash:a31d886366dd9966
Difference Hash:7d292b734d334141
Wavelet Hash:0f1f1f190118f1fd
Color Hash:#abac53

Other Hashes

Crop Resistant:7d292b734d334141

Scan History

Scan history not available

Unable to load historical scan data