Security Scan Report: esupport-view-fe-site-pre-608.dcr.sehlat.io

Redirected to:
https://login.microsoftonline.com/e20f6db1-0c59-4d26-b56c-b36bc14b34a2...
Site favicon
Submitted: Dec 28, 2025, 9:41:40 PMCompleted: Dec 28, 2025, 9:42:54 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 7 domains to perform 36 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://esupport-view-fe-site-pre-608.dcr.sehlat.io/

Effective URL: https://login.microsoftonline.com/e20f6db1-0c59-4d26-b56c-b36bc14b34a2/oauth2/v2.0/authorize?client_id=dfe95be3-2a70-4878-9b46-1cfea628f8bd&redirect_uri=https%3A%2F%2Fid.sehlat.io%2Flogin%2Fcallback&response_type=code&scope=openid+profile+email+https%3A%2F%2Fgraph.microsoft.com%2F.default&state=zfFDqedwEeO_DtTSOy2NKYPFa9zCFvoCqX9SU_H6dH0uKat_OJCmm2DvaUy1zT7fzBMJsAvbUc29JkwSDQzjEmKW-PkghDJooHIujCn2Wd2mIB_tGtXq8TA9UePdhtc4O-kjM4LB8hFIxEt9H8G5HirJtWml_exxMd_ET_IrePzxcfRVgxgJNjYfF3n4d03g7jWgL3KTh-c7v0BZw03kv5My8-IWd0iCAuNpCITRjP8_0H03tQULhWk5PBVR2jXkpKFaUSnKpn065cUINo_C-1LS2FLg-oiT6BJFHaPv0Vldo_LMyIUwRXJA5d9_5UgyYmcAKazIrHHtRb9beEkyOB2fqUj3BqYoiHPLNz26nVpsNJoCOeBrHizo5QbXe2DJyfvz8Xukfa-oVlbCIUkfT_dHZMiR6JaULnUKtxTLiOS8QEztKc3hw56OA0bN2vtr8GPHzP44VJWsZgFee88SZk9hIavn4e68gT92o22KNQzDOlvwftJU6DqNBa3FyFfnfLjIBVuiAGix1UhkVHok3bk1XI09I6eO4p2NkRCh78ww5fxvfctTnKfj4IlnvyjdqIijkGDTnazTLbaJnvYyCfMnp5aBBwIUCThsc3DTFkuxGpdTFwuoGrYXty2s3BSNjaareQpeS2C50jV_FhpFdlw1LPArcTRtNAgs7hmHIpHo7sCh7yIKXJLM9g5Bzoq5d4YPNNiNBOdW9eiToMM1qAGwHpIzjdqRCHt129bFjy4a4L73qJ2RloNju-gylPic_1uDWSCynIhhCSWYr73DQnAzksvOyQcmjnUs7DJ_1EGIG7MaXb0rSaVwW_NB_wvFkWEIK_ckmCneCVfCVNjISBKdW12IsNUP2mRql-mywbJLDnpemFPwCQpmZ9hRe0rGEceOugRQ_3SNvriIsDUlLy6TjM0ckByKCIMKTNzDf4yUgiiyrwxJgTsWiriv7oF37HzGrxz-XlcHj2uC5Td26LU1k1dYsNR1xrYHOTT8gp2YjKxewY_4HqgqSbjvDqr7dlauhkRzAuzH_8ZvlBPLFSO-JOgI1P673Epz3ZTbsqrbkm1O3akjio5Wburnt-RVXrNz7FfS_4LroVrsKEHxS7Z1p-an1RYgv6FQW7prLCUg5rCnzcXNJ8kN2BTtTUvxyThb_5DycMFXoqL2nEURam4JrN_ipBH7uR9cgn2m8bgHr7MSvL1ApDSNaK4v6eVGYFKJJx-d1bCN1MFNHwUrcejtvUzIS6isZUY_q1wzUg-a9LfccYGnOkYpfs9bJUWH60IIuLg_Xd4Q_4FqrqTNiSody_9LAGOQqpsfYs5jnJfPWcOxDSRCVGzv501E8mA-efQgZ3UefqSNmyceQgwzqDhE9YHA9y1DowINmXeKcf6JmMTSx2Se1j6NFWpcPyha&sso_reload=trueRedirected

AI Security Verdict

Low Risk

Confidence: 92%

2
Risk Score

Page harvests credentials via a cross‑origin Microsoft login form; high‑risk phishing kit.

Risk Factors
Cross‑origin credential form submission
Unranked / low‑reputation domain
Multiple redirects (potential redirect chaining abuse)
Highly obfuscated JavaScript
Brand mismatch (site shows "Julius Bar" but forwards to Microsoft login)
Safety Factors
Page served from an identity-provider sign-in endpoint (login.microsoftonline.com); a relying-party brand and login form here are normal SSO, not impersonation — risk clamped from 10 to 2
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Domain 'esupport-view-fe-site-pre-608.dcr.sehlat.io' uses the British Indian Ocean Territory country-code top-level domain (.io), featuring subdomain 'esupport-view-fe-site-pre-608.dcr'. The second-level label 'sehlat' is 6 characters long split between two vowels and four consonants. It segments into 3 words: se, hl, at. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://esupport-view-fe-site-pre-608.dcr.sehlat.io/

Page Load Overview

2.66s
Total Load Time
36
HTTP Requests
0
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1513.107.246.44UnknownUnknown
32.16.241.211Germany
AS20940Akamai International B.V.
140.126.31.71UnknownUnknown
140.126.32.133UnknownUnknown
04--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15F937D9ABFB61937824A51B5B47A3E02AA3559035908CDA0F15CCEC02FFB34D863B657

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:lE8GLGGnVXVQlVMbVsWVnRVPLXEzzTEyqU6MVnvnaloMPb1EqtzisVrUC:a8YVXV4VyVsWVRVjEmyS22VrUC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:96562:MCCFjogmwABFBomkZaODBABYaRIZHABtESsUTEEggWYeAJAlqBpcdKySWiKALsQAAUIiAJKMRmHCChwZRUEBowwyQctOFw8A

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffffe1818180000
Perceptual Hash:9dc8233ecdd1998c
Difference Hash:204db23232325cfe
Wavelet Hash:ffffff9a18180000
Color Hash:#2d3c86

Scan History

Scan history not available

Unable to load historical scan data