Security Scan Report: watco.microsoft-notifcation.com

Submitted: Sep 6, 2026, 1:45:05 PMCompleted: Sep 6, 2026, 1:48:22 PMpubliccompleted

This website contacted 3 IPs in 1 country across 2 domains to perform 12 HTTP transactions. The main domain is watco.microsoft-notifcation.com and was registered 28 years ago.

Submitted URL: https://watco.microsoft-notifcation.com/wa4d1737192/78b65c00e4993df97452c88c/index.php?id=60f29657ebf9c47f483976bd43ae6916

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Page harvests Microsoft credentials on an unranked domain using disguised fields – confirmed phishing scam.

Risk Factors (5)
Brand impersonation of Microsoft
Credential harvesting form
Disguised password field
Unicode evasion in form inputs
Unranked / low‑reputation domain
Domain age information unavailable

Details

Page Title

Login

Scan Type

public

Domain Name Analysis

The domain 'watco.microsoft-notifcation.com' uses the commercial generic top-level domain (.com) with subdomain 'watco'. Its registrable label 'microsoft-notifcation' stretches across 21 characters holding eight vowels versus 12 consonants; it also includes 1 hyphen. Segmentation suggests four words: microsoft, not, if, cation. Median word length is 4.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://watco.microsoft-notifcation.com/wa4d1737192/78b65c00e4993df97452c88c/index.php?id=60f29657ebf9c47f483976bd43ae6916

Page Load Overview

11.32s
Total Load Time
3.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:767 chars
Detector Agreement:100%

Website Classification

Primary Category

education learning79% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

education learning
79%
technology software
70%
government public service
32%
corporate business
32%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
43.145.232.23Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
465.8.131.118Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
43.145.232.22Aws · CLOUDColumbus, Ohio, United States
AS16509Amazon.com, Inc.
123--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10ED097878C00704296803E915CE2F12CC0887E243042CD10D5C070993CE2B4CC823520

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:h4hqfzwzn0gYkrG3iM+hMgveJmdKOuB9d:hxzwomGKMgmJmIOG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:417fbf0f2f247f4fdd5d44b3e87acbac

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffff1c0000000000
Perceptual Hash:989cc5336766ce4c
Difference Hash:f0f0b0f0f8f9d86a
Wavelet Hash:ffff3f18000000ff
Color Hash:#862d7d

Scan History

Scan history not available

Unable to load historical scan data