Security Scan Report: leasecom.blob.core.windows.net

Submitted: Oct 2, 2026, 9:53:09 AMCompleted: Oct 2, 2026, 9:53:43 AMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 97%

10
Risk Score

Fake Microsoft sign-in hosted on Azure Blob Storage, capturing passwords with brand impersonation, DevTools/right-click blocking and multi-step verification lures. Do not enter credentials.

Risk Factors (5)
Impersonation of Microsoft's sign-in experience on a non-Microsoft domain
Credential-capturing password fields on cloud-storage shared hosting
DevTools and right-click blocking with dynamic code execution (anti-analysis)
Simulated multi-step authentication and error/verification lures to extract credentials
Domain unranked in Cisco Umbrella while claiming a major brand identity
Domain age information unavailable

Details

Page Title

Secure Account Access

Scan Type

public

Domain Name Analysis

The domain name 'leasecom.blob.core.windows.net' uses the network infrastructure generic top-level domain (.net) with subdomain 'leasecom.blob.core'. The core label 'windows' covers 7 characters with two vowels and 5 consonants. Splitting it apart reveals 1 word: windows. The median word length lands at 7 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://leasecom.blob.core.windows.net/leasecom/ifipeinture.html

Page Load Overview

1.00s
Total Load Time
541 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:3,154 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical63% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

documentation technical
63%
corporate business
43%
technology software
43%
government public service
42%
cryptocurrency blockchain
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
757.150.202.147Azure · CLOUDCopenhagen, Capital Region, Denmark
AS8075Microsoft Corporation
1151.101.65.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1140.82.121.4Frankfurt am Main, Hesse, Germany
AS36459GitHub, Inc.
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
113.107.246.44Azure · CLOUDUnited States
AS8075Microsoft Corporation
113.107.246.61Azure · CLOUDUnited States
AS8075Microsoft Corporation
1185.199.111.133Fastly · CDNUnited States
AS54113Fastly, Inc.
1151.101.129.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1185.199.110.133Fastly · CDNUnited States
AS54113Fastly, Inc.
159--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DC64F8178D573E0A4762626636ECACE50A1D47CA709200EDF62EE4C9CFF8916DCE21DD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:sh1jTTuLJcJIw4e1iTyfHoZ+pFRlXkbbkFX3:mjTTDsx8FRlXkbbkFX3

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:333290:hYEUKWVFAWkkgIFAUnTIC7TBDJrOppgWAZDKAAVkIEooAlIQSJIFgFvgFwDYxA9igRhJGCEggA4DKdqSCxLSQCCREcAhhBbo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000393b333f3737
Perceptual Hash:845970764cdbd96c
Difference Hash:88e4f2f3e5e6e6e6
Wavelet Hash:00003b3b373f373f
Color Hash:#c59a87

Other Hashes

Crop Resistant:88e4f2f3e5e6e6e6

Scan History

Scan history not available

Unable to load historical scan data