Security Scan Report: titopendek.web.id

Redirected to: https://login.microsoftonline.com/9bcac096-d3bb-45ce-b126-54865638b88c/oauth2/authorize?client%5Fid=00000003%2D0000%2D0ff1%2Dce00%2D000000000000&response%5Fmode=form%5Fpost&response%5Ftype=code%20id%5Ftoken&resource=00000003%2D0000%2D0ff1%2Dce00%2D000000000000&scope=openid&nonce=218C0C00C41247C6067B8FEEE020E72527642F23533538F7%2D25A2A6FF579B4EEE2F7185B0F99E044C9BF27CF15AA31EDA51A0A845A400ADC6&redirect%5Furi=https%3A%2F%2Fsigmacoid%2Esharepoint%2Ecom%2F%5Fforms%2Fdefault%2Easpx&state=OD0w&claims=%7B%22id%5Ftoken%22%3A%7B%22xms%5Fcc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D&wsucxt=1&cobrandid=11bd8083%2D87e0%2D41b5%2Dbb78%2D0bc43c8a8e8a&client%2Drequest%2Did=616bfba1%2De071%2D6000%2Dd75e%2D0f902a73d4f9&sso_reload=true

Site favicon
Submitted: Feb 28, 2026, 1:56:16 PMCompleted: Feb 28, 2026, 1:57:36 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 1 HTTP transaction. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: http://titopendek.web.id/

Effective URL: https://login.microsoftonline.com/9bcac096-d3bb-45ce-b126-54865638b88c/oauth2/authorize?client%5Fid=00000003%2D0000%2D0ff1%2Dce00%2D000000000000&response%5Fmode=form%5Fpost&response%5Ftype=code%20id%5Ftoken&resource=00000003%2D0000%2D0ff1%2Dce00%2D000000000000&scope=openid&nonce=218C0C00C41247C6067B8FEEE020E72527642F23533538F7%2D25A2A6FF579B4EEE2F7185B0F99E044C9BF27CF15AA31EDA51A0A845A400ADC6&redirect%5Furi=https%3A%2F%2Fsigmacoid%2Esharepoint%2Ecom%2F%5Fforms%2Fdefault%2Easpx&state=OD0w&claims=%7B%22id%5Ftoken%22%3A%7B%22xms%5Fcc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D&wsucxt=1&cobrandid=11bd8083%2D87e0%2D41b5%2Dbb78%2D0bc43c8a8e8a&client%2Drequest%2Did=616bfba1%2De071%2D6000%2Dd75e%2D0f902a73d4f9&sso_reload=trueRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Phishing page impersonating Telkomsigma to steal Microsoft credentials.

Risk Factors
Credential‑harvesting login form
Brand impersonation of Telkomsigma
Cross‑origin credential submission to external domain
Multiple redirects (6) to a Microsoft login page
Unranked domain with brand claim
Domain age information unavailable

Details

Page Title

New Tab

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Within the Indonesian country-code top-level domain (.web.id), 'titopendek.web.id' is registered with no subdomain. The second-level label 'titopendek' is 10 characters long split between 4 vowels and 6 consonants. Breaking it apart gives four words: t, it, open, dek. Expect 2.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://titopendek.web.id/

Page Load Overview

8.07s
Total Load Time
22
HTTP Requests
7
Domains
465 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
22103.127.99.218Bogor, West Java, Indonesia
AS133800PT Biznet Gio Nusantara
221--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T192736AF5D6F96394158FC3D5EB661895AF3E10FB264981A4722C9BF0AF11898CF87C80

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:HIkPaMxf/N6cw15UxDTti0xhfK6DV/JPsEnOJwNtPDsTSq:Ek2AZzxLDV/JJw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:76905:BWIhDnGIlCwItBQQBcEUaAgCC0oiI03kRiiCUJVhIAQFHbeCeQwQQiCIyEAwwFAJghAmoVAjUwIEYgDqEOlBMCoFAE6CLcUR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:eee7c3e7fffffffe
Perceptual Hash:f7225588dd88dd89
Difference Hash:080c1e0800000000
Wavelet Hash:1e0703270f0f0f0e
Color Hash:#c5878f

Other Hashes

Crop Resistant:080c1e0800000000

Scan History

Scan history not available

Unable to load historical scan data