Security Scan Report: gecu0-my.sharepoint.com

Redirected to:
https://login.microsoftonline.com/b9716ad7-910e-48ab-80a2-af0f5e3c5bdf...
Site favicon
Submitted: Sep 17, 2026, 11:32:30 PMCompleted: Sep 17, 2026, 11:32:51 PMpubliccompleted

This website contacted 16 IPs in 4 countries across 7 domains to perform 17 HTTP transactions. The main domain is login.microsoftonline.com and was registered 31 years ago.

Submitted URL: https://gecu0-my.sharepoint.com

Effective URL:

https://login.microsoftonline.com/b9716ad7-910e-48ab-80a2-af0f5e3c5bdf...
Redirected

The Cisco Umbrella rank of the primary domain is #66 of the top 1 million websitesTop 100 Site

AI Security Verdict

Low Risk

Confidence: 55%

2
Risk Score

A GECU-branded Microsoft 365 sign-in served from a SharePoint tenant subdomain that redirects to genuine Microsoft authentication. No malware, IoC or exfiltration detected, but the non-official tenant branding warrants caution and verification.

Risk Factors
Custom branded login ('GECU Microsoft 365 Account') served from a non-official SharePoint tenant subdomain, a known pattern used in tenant-based brand impersonation
Displayed brand does not match the hosting domain's registrable owner
Safety Factors
Final authentication page is the genuine login.microsoftonline.com Microsoft endpoint
Cross-origin credential analysis detects a legitimate SSO flow, not credential exfiltration
No Indicators of Compromise, no JavaScript malware, no IDS alerts
Microsoft-hosted authentication infrastructure with standard hidden fields (flowToken, canary, PPSX) consistent with real Microsoft login
Page served from an identity-provider sign-in endpoint (login.microsoftonline.com); a relying-party brand and login form here are normal SSO, not impersonation — risk clamped from 4 to 2
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Domain Name Analysis

The domain name 'gecu0-my.sharepoint.com' uses the commercial generic top-level domain (.com), featuring subdomain 'gecu0-my'. The registrable portion 'sharepoint' spans 10 characters split between four vowels and 6 consonants. Word splitting yields two words: share, point. Median word length comes out to five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://gecu0-my.sharepoint.com

Page Load Overview

2.24s
Total Load Time
468 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:163 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software64% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
64%
government public service
42%
healthcare medical
25%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
220.190.159.128Office365 · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
113.107.138.10Office365 · CLOUDRedmond, Washington, United States
AS8075Microsoft Corporation
12.21.239.135Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
140.126.31.128Office365 · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
152.107.243.69Office365 · CLOUDFrankfurt am Main, Hesse, Germany
AS8075Microsoft Corporation
152.107.243.83Office365 · CLOUDFrankfurt am Main, Hesse, Germany
AS8075Microsoft Corporation
152.107.243.89Office365 · CLOUDFrankfurt am Main, Hesse, Germany
AS8075Microsoft Corporation
140.126.31.131Office365 · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
195.101.74.113Akamai · CDNSchiphol, North Holland, Netherlands
AS20940Akamai International B.V.
140.126.31.71Office365 · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
1716--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T197538EA63B88302B8F8259B5D0AB7F0DD33E15975948CCD9E18CCD481DBEAAE9537503

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:jHMF8GLG2ceH9f5MUCFB8xr31A7WhQ8TIZ9Tjuokmap5vPoMLu44:zMF8DeHJ5MUCFmxD2WhQ82a/AZ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:63070:mRSAGYAy4QABICUhAdwDZJPKGEghgKRKikYgCJoAl2CSSCSQ0hohwAAsYC0EFCKREYLATZmNUjIiYBIQwYIFIgNJQ1K4B8gi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:20021b1b18180000
Perceptual Hash:89fd63429ccec919
Difference Hash:4896b2b2b2b3e557
Wavelet Hash:ffc3dbdf1b380000
Color Hash:#2d5ed2

Scan History

Scan history not available

Unable to load historical scan data