Security Scan Report: bpre.s3.eu-north-1.amazonaws.com

Submitted: Oct 22, 2025, 8:58:22 AMCompleted: Oct 22, 2025, 9:00:22 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 2 domains to perform 5 HTTP transactions. The main domain is bpre.s3.eu-north-1.amazonaws.com.

Submitted URL: https://bpre.s3.eu-north-1.amazonaws.com/realtyfinance.html

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Impersonates Microsoft on an unranked S3 URL; likely phishing attempt.

Risk Factors
Brand impersonation on an unranked cloud storage domain
Use of a cloud storage URL (s3.amazonaws.com) to host a fake Microsoft verification page
Domain not listed in Cisco Umbrella top 1M (UNRANKED) while claiming Microsoft brand
Domain age information unavailable

Details

Page Title

Microsoft Secure Document Sharing - Security Verification

Scan Type

public

Language

🇺🇸

English

(55% confidence)

Category

documentation technical

(69%)

Domain Information

The domain name 'bpre.s3.eu-north-1.amazonaws.com' uses the commercial generic top-level domain (.com) with subdomain 'bpre.s3.eu-north-1'. The core label 'amazonaws' covers 9 characters containing 4 vowels alongside five consonants. Splitting it apart reveals 3 words: amazon, aw, s. Median word length comes out to 2 characters. 'amazonky' is most common in Czech usage. Secondary signals appear in Slovak and Croatian. Net impression: Czech phrase.

Screenshot

Security scan screenshot of https://bpre.s3.eu-north-1.amazonaws.com/realtyfinance.html

Page Load Overview

4.50s
Total Load Time
5
HTTP Requests
2
Domains
6 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:55%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:55%
Script Type:Latin
Text Length:267 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical69% confidence
Type: static
Method: ml+structural

All Detected Categories

documentation technical
69%
technology software
42%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3209.38.21.155Sydney, New South Wales, Australia
AS14061DIGITALOCEAN-ASN
13.5.217.167Stockholm, Stockholm County, Sweden
AS16509AMAZON-02
13.5.217.65Stockholm, Stockholm County, Sweden
AS16509AMAZON-02
53--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C3B165175169201165D3A0787BA6A7482B659903B10B9A1C3ECC1288DFCEFC9D9F73DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:KosY0nzPg6yZ6DVnfAtsyUShhZ8EmjlsL/pkz4iN8TMgK3yJOFoijmCHCcU9z4:KY0zPg6yZ6DVf2syUShhZe4/Oz4iN8T4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:5591:GmA4BBHQAXO4QJCHEQQMACQAAgAUAAOAAEgAEFFLKwBAAJEACBHKthKEMQACwSYIAIBAQQEkAJVQcBEiqBDuUMMAKiMMEIAc

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7e7e7e7e7ff
Perceptual Hash:b366cc9998663333
Difference Hash:00080c0c0c0c0c00
Wavelet Hash:1f0707030307070f
Color Hash:#8788c5

Other Hashes

Crop Resistant:00080c0c0c0c0c00

Scan History

Scan history not available

Unable to load historical scan data