Security Scan Report: azekconnect.com

Redirected to: https://login.microsoftonline.com/acf16ca8-7240-44da-b72c-6c734b72b89b/saml2?sso_reload=true

Site favicon
Submitted: Feb 27, 2026, 7:22:10 PMCompleted: Feb 27, 2026, 7:23:29 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 3 countries across 8 domains to perform 39 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://azekconnect.com

Effective URL: https://login.microsoftonline.com/acf16ca8-7240-44da-b72c-6c734b72b89b/saml2?sso_reload=trueRedirected

The Cisco Umbrella rank of the primary domain is #802,512 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Phishing login page impersonating AZEK; high risk of credential theft.

Risk Factors
Cross‑origin credential form (email+password) to external domain
Critical network IDS alert indicating possible data exfiltration
Brand impersonation on a low‑ranked, non‑official domain
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'azekconnect.com' uses the commercial generic top-level domain (.com) with no subdomain. Count 11 characters in 'azekconnect' split between four vowels and seven consonants. Tokenizing the label suggests 3 words: az, ek, connect. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://azekconnect.com

Page Load Overview

3.17s
Total Load Time
34
HTTP Requests
8
Domains
1012 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:178 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1040.126.32.133Sweden
413.107.246.44France
420.190.159.128United States
420.189.173.27UnknownUnknown
423.207.210.137UnknownUnknown
4104.18.13.165United States
AS13335Cloudflare, Inc.
440.126.32.68UnknownUnknown
347--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1A6735BD97FA21937C28A40B9B57A6E02AB3B5903984CCD74F19CC8842FFA75D9137607

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:ly8GLGGoFj0ax5IyEk77gx2xpTvPoMmCf/Em1wiDoC:48rFIaxQ32RACoC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:77014:BQMQ1uYOEiiXA4IqDsAVACwYYPAeCKAhgULCQCSwQGgBCiIBciQCIoQbgMMBOMILMArAkIShyYgGIIRFHQBELwcscxyAMQBQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff7f381818180000
Perceptual Hash:cd8362f69ca6c9c8
Difference Hash:48e2f23232324622
Wavelet Hash:ffff7e1e98180080
Color Hash:#409fbf

Scan History

Scan history not available

Unable to load historical scan data