Security Scan Report: pyre.cloudsecure.ltd

Redirected to: https://login.microsoftonline.com/de2f860e-a567-4dc7-af6e-5cb5501b0332/oauth2/v2.0/authorize?redirect_uri=https%3A%2F%2Fpyre.cloudsecure.ltd%2Fauth%2Fmicrosoft%2Fcallback&client_id=e51257ce-d278-4da9-95ac-7df99bebf206&scope=openid+profile+email+User.Read&response_type=code&state=tK9IlE0lsXOvcw4570_8z_bFJrT_LYOi&sso_reload=true

Site favicon
Submitted: Feb 26, 2026, 5:44:52 AMCompleted: Feb 26, 2026, 5:46:08 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 4 countries across 5 domains to perform 22 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://pyre.cloudsecure.ltd/auth/microsoft

Effective URL: https://login.microsoftonline.com/de2f860e-a567-4dc7-af6e-5cb5501b0332/oauth2/v2.0/authorize?redirect_uri=https%3A%2F%2Fpyre.cloudsecure.ltd%2Fauth%2Fmicrosoft%2Fcallback&client_id=e51257ce-d278-4da9-95ac-7df99bebf206&scope=openid+profile+email+User.Read&response_type=code&state=tK9IlE0lsXOvcw4570_8z_bFJrT_LYOi&sso_reload=trueRedirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing login page impersonating Microsoft; do not enter credentials.

Risk Factors
Credential harvesting form on unrelated domain
Brand impersonation of Microsoft
Cross‑origin credential submission to Microsoft login endpoint
Low reputation (unranked) domain mimicking a major brand
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'pyre.cloudsecure.ltd' uses the .ltd top-level domain with subdomain 'pyre'. Count 11 characters in 'cloudsecure' with five vowels and six consonants. Tokenizing the label suggests two words: cloud, secure. Expect 5.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pyre.cloudsecure.ltd/auth/microsoft

Page Load Overview

2.64s
Total Load Time
18
HTTP Requests
5
Domains
446 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:78 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
613.107.246.44United States
32.23.227.223France
340.126.32.76SwedenUnknown
340.126.31.67United KingdomUnknown
320.90.134.28London, England, United Kingdom
AS8075Microsoft Corporation
185--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T197734BDABFA22937828741B5B5B96E02AF775903890CDD64F08CCCC42FFAA498167517

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:l+8GLGGLcCyItoIyEk77gx2xpTvPoMmCetEw5oiuUC:k8MzztJ32RA1C

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:79558:EKMYxxBopAgAjBgQUAMAEvcNJEoA6TGr0LvRCGFAwAOED2UQGBuKQEQqsEElAIgQAVZQItSoYCBGsIohwEhRIBghJCheACRu

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181818180000
Perceptual Hash:8c1d6336cc99d9cc
Difference Hash:31c4b2b2b2b0cc82
Wavelet Hash:0000183c7e7e7ffb
Color Hash:#87c2c5

Scan History

Scan history not available

Unable to load historical scan data