Is t135.e-mails.microsoft.com safe?
http://t135.e-mails.microsoft.com/
Coveragecomplete3 of 4 applicable core capabilities
Legitimate Microsoft email-tracking redirector that forwards visitors to Adobe Campaign authentication.
t135.e-mails.microsoft.com is a long-established Microsoft-owned domain used for marketing-campaign tracking. It automatically redirects users to Adobe’s identity service (auth.services.adobe.com) for single-sign-on flows tied to Adobe Campaign. No malware, phishing, or deceptive commercial mechanics were detected.
Loading saved screenshot
Preparing the saved page preview.
Where this site sits
- Dangerous1–20
- High Risk21–44
- Moderate Risk45–69
- Low Risk70–84
- Safe85–100
The score combines saved evidence strength and analysis quality. Coverage is reported separately.
01 · Investigation Brief
Investigation Brief
t135.e-mails.microsoft.com is a long-established Microsoft-owned domain used for marketing-campaign tracking. It automatically redirects users to Adobe’s identity service (auth.services.adobe.com) for single-sign-on flows tied to Adobe Campaign. No malware, phishing, or deceptive commercial mechanics were detected.
Technical evidence
the multi-engine malware scan reports zero malicious detections across 92 engines, and the browser threat feed shows no warnings.
The domain is 12,881 days old and presents a valid TLS certificate.
Visitor flow
A visitor clicking a link in a Microsoft marketing email is sent from t135.e-mails.microsoft.com to Adobe’s IMS login endpoint with the client ID “Campaign1”.
Operator versus customer risk
The only notable risk is user confusion when an unexpected Adobe login page appears after clicking a Microsoft-branded link.
Why the score is 82
The page automatically sent the browser to an unrelated external site. Coverage remains separate so missing sources cannot be mistaken for clean results.
02 · Security Evidence
Security evidence
Antivirus Engines
0/ 92
No detectionsFresh result
No detections across 92 engines
No antivirus engine in this saved scan raised an adverse result. This is one signal, not a guarantee.
- Malicious
- 0
- Suspicious
- 0
- Total
- 92
All 92 engine results
- 0xSI_f33d - unrated - Clean
- Abusix - clean - Clean
- Acronis - clean - Clean
- ADMINUSLabs - clean - Clean
- AILabs (MONITORAPP) - clean - Clean
- AlienVault - clean - Clean
- alphaMountain.ai - unrated - Clean
- AlphaSOC - unrated - Clean
- Antiy-AVL - clean - Clean
- ArcSight Threat Intelligence - unrated - Clean
- AutoShun - unrated - Clean
- Bfore.Ai PreCrime - unrated - Clean
- BitDefender - clean - Clean
- Bkav - unrated - Clean
- BlockList - clean - Clean
- Blueliv - clean - Clean
- Certego - clean - Clean
- ChainPatrol - clean - Clean
- Chong Lua Dao - unrated - Clean
- CINS Army - clean - Clean
- Cluster25 - unrated - Clean
- CRDF - clean - Clean
- Criminal IP - unrated - Clean
- CSIS Security Group - unrated - Clean
- CTX AI - clean - Clean
- Cyan - unrated - Clean
- Cyble - clean - Clean
- CyRadar - clean - Clean
- desenmascara.me - clean - Clean
- DNS8 - unrated - Clean
- Dr.Web - clean - Clean
- EmergingThreats - clean - Clean
- Emsisoft - clean - Clean
- Ermes - unrated - Clean
- ESET - clean - Clean
- ESTsecurity - clean - Clean
- Forcepoint ThreatSeeker - clean - Clean
- Fortinet - clean - Clean
- Fortra - unrated - Clean
- G-Data - clean - Clean
- GCP Abuse Intelligence - unrated - Clean
- Google Safe Browsing - clean - Clean
- GreenSnow - clean - Clean
- GreyNoise - unrated - Clean
- Gridinsoft - unrated - Clean
- Guardpot - unrated - Clean
- Heimdal Security - clean - Clean
- Hunt.io Intelligence - unrated - Clean
- IPsum - clean - Clean
- Juniper Networks - clean - Clean
- K7AntiVirus - unrated - Clean
- Kaspersky - clean - Clean
- LevelBlue - unrated - Clean
- Lionic - clean - Clean
- Lumu - unrated - Clean
- Malwared - clean - Clean
- MalwarePatrol - clean - Clean
- MalwareURL - unrated - Clean
- Mimecast - unrated - Clean
- Netcraft - unrated - Clean
- OpenPhish - clean - Clean
- PhishFort - unrated - Clean
- Phishing Database - clean - Clean
- Phishtank - clean - Clean
- PREBYTES - clean - Clean
- PrecisionSec - unrated - Clean
- Quick Heal - clean - Clean
- Quttera - clean - Clean
- Rising - clean - Clean
- SafeToOpen - unrated - Clean
- Sangfor - clean - Clean
- Sansec eComscan - unrated - Clean
- Scantitan - clean - Clean
- SCUMWARE.org - clean - Clean
- Seclookup - clean - Clean
- Snort IP sample list - unrated - Clean
- SOCRadar - unrated - Clean
- Sophos - clean - Clean
- StopForumSpam - clean - Clean
- Sucuri SiteCheck - clean - Clean
- ThreatHive - clean - Clean
- URLhaus - clean - Clean
- URLQuery - unrated - Clean
- Viettel Threat Intelligence - clean - Clean
- VIPRE - unrated - Clean
- ViriBack - clean - Clean
- VX Vault - clean - Clean
- Webroot - clean - Clean
- Xcitium Verdict Cloud - clean - Clean
- Yandex Safebrowsing - clean - Clean
- ZeroCERT - clean - Clean
- ZeroFox - unrated - Clean
Security Scans
Checked against the browser threat feeds available to this scan — no hit.
What we observed
Loading saved screenshot
Preparing the saved page preview.
Visual context from the captured page
Adobe Continue with Google
What the captured page showed
2 observations- 01
Adobe
- 02
Continue with Google
03 · Investigation Story
Investigation story
What the site claims
Adobe ID
What we observed
The page content was captured and checked alongside 92 antivirus results.
What independent research found
2 external findings were saved and compared with the page evidence.
What remains unverified
1 of the 4 applicable core capabilities did not complete, so those gaps remain visible in the coverage ledger.
Web research findings
Independent findings for t135.e-mails.microsoft.com, including public complaints, named review sources, registration records, and look-alike-domain evidence. A missing result is shown as unverified, never converted into a clean bill of health.
- Microsoft Q&Aopen
"it is more than suspicious that when you open https://t.infomail.microsoft.com in your browser you're going to be redirected to https://auth.services.adobe.com... Hello Microsoft? What's going on there?"
- Gridinsoftopen
"Registrant Microsoft Corporation Redmond, US"
Reputation Sources
How this domain rates across independent threat-intelligence and blocklist providers.
04 · Domain & Infrastructure
Domain & infrastructure
The plumbing behind the site — who registered it, how it’s encrypted, where it’s hosted, and where it links out. A valid certificate or a calm server doesn’t mean the business is honest — scam sites pass these checks too. Use this to corroborate the verdict, not to overturn it.
Infrastructure map
How the saved page connected to the wider web.
- Domaint135.e-mails.microsoft.com
- Redirects toauth.services.adobe.com
- Hosted byCloudflare, Inc.
- Referencesuse.typekit.net · p.typekit.net
Domain Timeline
- May 2, 1991Domain registered
First appeared in WHOIS records — 35 years old today.
- Aug 7, 2026Saved security review — Reviewed — inconclusive
The completed checks from this saved scan are detailed above.
t135.e-mails.microsoft.com has operated for years with no threat signals in this review — a long, stable track record, though it is never a guarantee on its own.
Contact Verification
Saved contact details can help identify the operator. Their presence supports traceability; it does not prove the business is trustworthy.
- No direct contact email found on the captured page.
Domain & Encryption
Redirect Chain
- 1302http://t135.e-mails.microsoft.com/
- 2302https://t135.e-mails.microsoft.com/xtk/logon.jssp
- 3302https://adobeid-na1.services.adobe.com/ims/authorize/v1?client_id=Campaign1&scope=AdobeID%2Cperson%2Csession%2Cadditional_info.projectedProductContext%2Cread_organizations%2Cadditional_info.user_image_url%2Cwrite_pc%2Caudiencemanager_api%2Copenid%2Ctriggers&response_type=code&redirect_uri=https%3A%2F%2Ft135.e-mails.microsoft.com%2Fxtk%2Flogon.jsspcross-domain
- 4200https://auth.services.adobe.com/en_US/deeplink.html?deeplink=ssofirst&callback=https%3A%2F%2Fims-na1.adobelogin.com%2Fims%2Fadobeid%2FCampaign1%2FAdobeID%2Fcode%3Fredirect_uri%3Dhttps%253A%252F%252Fadobe.com%26code_challenge_method%3Dplain%26use_ms_for_expiry%3Dtrue&client_id=Campaign1&scope=AdobeID%2Cperson%2Csession%2Cadditional_info.projectedProductContext%2Cread_organizations%2Cadditional_info.user_image_url%2Cwrite_pc%2Caudiencemanager_api%2Copenid%2Ctriggers&relay=366f5762-1d30-4c76-b8d0-04f052438186&locale=en_US&flow_type=code&idp_flow_type=login&s_p=google%2Cfacebook%2Capple%2Cmicrosoft%2Cline%2Ckakao&response_type=code&code_challenge_method=plain&redirect_uri=https%3A%2F%2Fadobe.com&use_ms_for_expiry=truecross-domain
Server Reputation
Referenced Domains
Outbound domains this page links to or loads resources from. Each links to its own security scan.
05 · Evidence Ledger
Evidence ledger
- Antiviruscomplete
- Browser threat feedcomplete
- Page contentpartial
- Analysiscomplete
- Visual evidencecomplete
The conclusion is supported by the evidence saved with this report.
Technical threat
suspiciousMalware, phishing, credential theft and hostile infrastructure.
Additional evidence review
Operator / customer risk
suspiciousComplaints, withdrawals, business conduct and commercial traps.
Additional evidence review
Source coverage and freshness
Status shows whether usable evidence was saved; finding shows what that evidence observed.
| Source | Result | Completion | Finding | Freshness |
|---|---|---|---|---|
| Antivirus | 0 of 92 engines flagged | Completed | No adverse finding | fresh · Aug 7, 2026 |
| Browser protection | No browser threat-list match | Completed | No adverse finding | Not available |
| Page content | Page fetched · HTTP 200 | Limited | No saved finding | Not available |
| Visual evidence | 2 visible observations saved with the page capture | Completed | No adverse finding | Not available |
| Independent research | 2 independent findings were saved | Completed | Adverse | Not available |
- Antivirus
- Result0 of 92 engines flagged
- CompletionCompleted
- FindingNo adverse finding
- Freshnessfresh · Aug 7, 2026
- Browser protection
- ResultNo browser threat-list match
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Page content
- ResultPage fetched · HTTP 200
- CompletionLimited
- FindingNo saved finding
- FreshnessNot available
- Visual evidence
- Result2 visible observations saved with the page capture
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Independent research
- Result2 independent findings were saved
- CompletionCompleted
- FindingAdverse
- FreshnessNot available
07 · Safety FAQ
Safety FAQ
Common questions, answered directly from the scan data above — so the answers reflect the saved verdict and evidence in this report.
Is t135.e-mails.microsoft.com a scam or is it safe?
Is t135.e-mails.microsoft.com safe to use?
Has t135.e-mails.microsoft.com been flagged by antivirus engines?
Is t135.e-mails.microsoft.com on any phishing or malware blacklists?
How old is the t135.e-mails.microsoft.com domain?
Does t135.e-mails.microsoft.com have a valid SSL certificate?
Where is t135.e-mails.microsoft.com hosted?
How often is the t135.e-mails.microsoft.com report updated?
08 · Final Verdict
Final verdict
Legitimate Microsoft email-tracking redirector that forwards visitors to Adobe Campaign authentication.
t135.e-mails.microsoft.com is a long-established Microsoft-owned domain used for marketing-campaign tracking. It automatically redirects users to Adobe’s identity service (auth.services.adobe.com) for single-sign-on flows tied to Adobe Campaign. No malware, phishing, or deceptive commercial mechanics were detected.
09 · Community
