Security Scan Report: enterpriseenrollment.virtainkatsastus.fi

Redirected to: https://login.microsoftonline.com/organizations/oauth2/v2.0/authorize?redirect_uri=https%3A%2F%2Fintune.microsoft.com%2Fsignin%2Findex%2F&response_type=code%20id_token&scope=https%3A%2F%2Fmanagement.core.windows.net%2F%2Fuser_impersonation%20openid%20email%20profile&state=OpenIdConnect.AuthenticationProperties%3DDQWJzqOemeOi2WZX7tdoncTLDWLLGgHPGvUH_Ps_OM366ZTM2_ZeHxkvjP8hVQVoddKn4LvixDy5kV3i9KC8gceDIQhiqLC4DQF6w_qei8-N__ThPQ-W8n8tAFa7PC05dHKZGMB8Sh66zQfQc8IIv90C0tl1849bxqtRlwYSvd5QKSFamiEoWFTG36Txb54LuPkpz1GMjg-11XOl9GSkBfqGlSZqlcrv3AJSRSS70f8SKO4734EYzrQOMrubKJ12FFbqflSHBBwEDl5PgzwJ44XEhh4oh3eAuU_9YhrkMVlWmRFknFNnAyVbzjxVGtmtpP7M2RUnMDzRALdcGZ_dTqm0sxp0Wrd0ARmA2h9ntA-BSvFXp4B0LdWiGtAZ0Sh786_Lpmt_LuV7T51-a6A20q730XOMSAqD7UJRrvZpxbdo-MaKZyeE6KgtQ8_X3nEX-RLB_qmsgp7dVTL35x5RbCUVJ6uL9Gcx0gBIiKl4KkT9rQSbQAD1DGvPLQ0mhLen&response_mode=form_post&nonce=639034734878942331.OTFjMmVlNWQtZDA3Yy00ZjZhLWE0ZDQtNmY1ZDNmMDRjOWFlYzZjZDVhZmQtOTg4Zi00M2E2LWJhODItMjk5YjUyMDExOTI5&client_id=c44b4083-3bb0-49c1-b47d-974e53cbdf3c&site_id=501430&instance_aware=true&nativebroker=1&client-request-id=3eb10a10-39fa-4ad6-8e03-6c304552186d&x-client-SKU=ID_NET472&x-client-ver=8.3.0.0&sso_reload=true

Site favicon
Submitted: Jan 8, 2026, 12:51:06 PMCompleted: Jan 8, 2026, 12:52:17 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 2 countries across 6 domains to perform 25 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://enterpriseenrollment.virtainkatsastus.fi

Effective URL: https://login.microsoftonline.com/organizations/oauth2/v2.0/authorize?redirect_uri=https%3A%2F%2Fintune.microsoft.com%2Fsignin%2Findex%2F&response_type=code%20id_token&scope=https%3A%2F%2Fmanagement.core.windows.net%2F%2Fuser_impersonation%20openid%20email%20profile&state=OpenIdConnect.AuthenticationProperties%3DDQWJzqOemeOi2WZX7tdoncTLDWLLGgHPGvUH_Ps_OM366ZTM2_ZeHxkvjP8hVQVoddKn4LvixDy5kV3i9KC8gceDIQhiqLC4DQF6w_qei8-N__ThPQ-W8n8tAFa7PC05dHKZGMB8Sh66zQfQc8IIv90C0tl1849bxqtRlwYSvd5QKSFamiEoWFTG36Txb54LuPkpz1GMjg-11XOl9GSkBfqGlSZqlcrv3AJSRSS70f8SKO4734EYzrQOMrubKJ12FFbqflSHBBwEDl5PgzwJ44XEhh4oh3eAuU_9YhrkMVlWmRFknFNnAyVbzjxVGtmtpP7M2RUnMDzRALdcGZ_dTqm0sxp0Wrd0ARmA2h9ntA-BSvFXp4B0LdWiGtAZ0Sh786_Lpmt_LuV7T51-a6A20q730XOMSAqD7UJRrvZpxbdo-MaKZyeE6KgtQ8_X3nEX-RLB_qmsgp7dVTL35x5RbCUVJ6uL9Gcx0gBIiKl4KkT9rQSbQAD1DGvPLQ0mhLen&response_mode=form_post&nonce=639034734878942331.OTFjMmVlNWQtZDA3Yy00ZjZhLWE0ZDQtNmY1ZDNmMDRjOWFlYzZjZDVhZmQtOTg4Zi00M2E2LWJhODItMjk5YjUyMDExOTI5&client_id=c44b4083-3bb0-49c1-b47d-974e53cbdf3c&site_id=501430&instance_aware=true&nativebroker=1&client-request-id=3eb10a10-39fa-4ad6-8e03-6c304552186d&x-client-SKU=ID_NET472&x-client-ver=8.3.0.0&sso_reload=trueRedirected

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Phishing page impersonating Microsoft Azure login; high risk of credential theft.

Risk Factors
Credential harvesting login form on an untrusted domain
Brand impersonation on a domain that does not belong to the brand
Unranked domain used to mimic a Microsoft service
Domain age information unavailable

Details

Page Title

Sign in to Microsoft Azure

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(78%)

Domain Information

The domain name 'enterpriseenrollment.virtainkatsastus.fi' uses the Finnish country-code top-level domain (.fi) with subdomain 'enterpriseenrollment'. Count 16 characters in 'virtainkatsastus' with 6 vowels and ten consonants. It segments into 7 words: vi, rta, in, kat, s, as, tus. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://enterpriseenrollment.virtainkatsastus.fi

Page Load Overview

2.49s
Total Load Time
25
HTTP Requests
6
Domains
628 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:187 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software78% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
78%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
313.74.111.192Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
340.126.31.71Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
3150.171.84.25United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
313.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
320.190.159.73Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
340.126.31.69Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
340.126.31.128Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
257--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T140937DEA7FB61937868605B2B5B97D036B7A9A03884CC970F16CCC842FF760D9127647

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:ML8GLGG91qvJA+Vku6gLQo1zTEyqU6MVnvnaloMPblEfiit1RE1:283vJflLQZyS2TvE1

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:95159:k4Kn0XSEkABxEIQ58KoHAqACAEZJABlAFFEomwMHovACJGISYlQoRpZ6gnBgsz5EgsBATPAgAQYBTyHpCCEBB6QYY+RVCgRA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:003a3f3f373fff00
Perceptual Hash:85d970f626d919e4
Difference Hash:c8e2d2d2e4cae6e7
Wavelet Hash:003a3b3f373f7700
Color Hash:#e06cd8

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data