security-server-landing-page--spencer-hunt1.replit.app
34.117.33.233AS396982 · US- Brand impersonation: Microsoftsuspicious
- Threat Intelligenceclean
- Browser Analysisclean
- Network & Hostingclean
- Related Infrastructureclean
- Content Inspectionunknown
- Domain Intelligenceunknown
- TLS Fingerprintunknown
- +1 more below
Be careful — warning signs found
AutomatedIt asks you to enter a password. This site shows signs commonly seen in scams or impersonation, but we could not confirm it for certain. It may be a real threat, or it may be a legitimate site that simply looks unusual to our automated checks.
What to do
Avoid entering passwords or payment details until you are sure it is genuine. Open the company directly from its known website or app instead of this link. Check the evidence below and escalate to your analyst if unsure.
"Suspicious" is a caution, not a confirmation — it can be a false alarm. The evidence below explains why it was flagged.
Findings
Strongest firstThis page's fingerprint — its logo, screenshot, favicon, page structure or scripts — matches a brand's protected baseline, and the page is served from a host that brand does not own. The baseline's owner has been alerted separately.
Analyst noteThe strongest shape this matcher knows: the page serves the brand's own logo file byte-for-byte (Hamming 0) AND asks for a credential, on a host the brand does not own. A review page or a partner page carries the same asset; it does not ask for the password. Check where the form posts.
File
The file was not analysed, so the scan carries no verdict on the file itself.
Infrastructure
- IP
- 34.117.33.233GOOGLE-CLOUD-PLATFORM - Google LLC, US · AS396982US
- TLS
- CN=WR3, O=Google Trust Services, C=US · expires Dec 1, 2026
Hashes & fingerprints
Page capture
LiveTitle “Sign in to your account”
Engines
9 · time to verdictPage
- HTTP
- 200 · Completed
- Title
- Sign in to your account
- Load
- 1.53 s · 8 requests