Phishing detection: microsoft0117.vercel.app
Microsoft Investigate
Domain
microsoft0117.vercel.app0 CT hosts on apex
IP
64.29.17.3
URL
https://microsoft0117.vercel.app
Cert
WR1
Phishunt analysis Beta
38
medium suspicion suspiciousheuristic risk score · not a probability
Why?
- +5.3 Keyword match
- +5.1 Site cluster
- +4.5 Brand in title
- +4.1 Brand in screenshot
- +3.7 Brand in domain label
- +3.4 Cert reuse
- +3.4 Shared IP cluster
- +3.0 OpenPhish
- +2.0 Young domain
- +1.1 ASN reputation
- +1.1 No CSP header
- +0.6 Suspicious TLD
- +0.5 Long domain
- +0.3 Free CA
- +0.1 Deep subdomain
19 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Microsoft impersonation page hosted on a Vercel subdomain, with the brand name embedded in the domain and page title. Flagged by OpenPhish and sharing infrastructure with other phishing clusters, likely designed to harvest Microsoft account or Office 365 credentials.
OpenPhishBrand in domain labelPaaS host
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-28 · confidence 85%
Domain & Network
Whois
Registrar
Tucows Domains Inc
Network
IP
64.29.17.3
Country
United States
Hosting
Amazon.com, Inc.
ASN
AS16509
TLS Cert
WR1
External detection
OpenPhish
CleanGoogle Safe Browsing · PhishTank · TweetFeed · urlscan.io
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise