Security Scan Report: invoice.hardie.dev

Redirected to:
https://accounts.google.com/v3/signin/identifier?opparams=%253F&dsh=S4...
Site favicon
Submitted: Oct 3, 2026, 11:54:59 AMCompleted: Oct 3, 2026, 11:55:35 AMpubliccompleted

This website contacted 11 IPs in 1 country across 7 domains to perform 25 HTTP transactions. The main domain is accounts.google.com and was registered 18 years ago.

Submitted URL: https://invoice.hardie.dev/pylon/auth/google?referer=invoice.hardie.dev/

Effective URL:

https://accounts.google.com/v3/signin/identifier?opparams=%253F&dsh=S4...
Redirected

AI Security Verdict

Safe Website

Confidence: 92%

0
Risk Score

Real Google OAuth sign-in page on accounts.google.com reached via an OAuth handoff from invoice.hardie.dev; no forms harvest data externally and no threat signals were found.

Safety Factors (4)
Genuine Google OAuth sign-in flow (accounts.google.com) with a real Google client_id and OAuth state parameter
Scanner confirms legitimate SSO flow rather than credential exfiltration
Clean threat intelligence, YARA, kit-roster and IDS results
Cross-domain redirect is an ordinary OAuth redirect, not a score-raising signal
Domain age information unavailable

Details

Page Title

Sign in - Google Accounts

Scan Type

public

Domain Name Analysis

The domain 'invoice.hardie.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain 'invoice'. Its registrable label 'hardie' stretches across 6 characters holding 3 vowels versus 3 consonants. It segments into one word: hardie. Median word length comes out to six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://invoice.hardie.dev/pylon/auth/google?referer=invoice.hardie.dev/

Page Load Overview

2.45s
Total Load Time
883 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:980 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software51% confidence
Type: spa
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
51%
social media network
36%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5142.251.127.84Google · CDNUnited States
AS15169Google LLC
299.103.208.245Birmingham, Michigan, United States
AS7018AT&T Enterprises, LLC
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2142.251.20.94Google · CDNUnited States
AS15169Google LLC
2142.251.20.113Google · CDNUnited States
AS15169Google LLC
2142.251.20.101Google · CDNUnited States
AS15169Google LLC
2142.251.155.119Google · CDNUnited States
AS15169Google LLC
2142.251.13.94Google · CDNUnited States
AS15169Google LLC
2192.178.183.139Google · CDNUnited States
AS15169Google LLC
2142.251.14.138Google · CDNUnited States
AS15169Google LLC
2511--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CE45A4CF9230A03FFD73A4F6E990ED4EF2884DD1E64A4676BC71A91342EA5A61751330

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:BCrq3j6/8+Oq3j6/8+Iq3j6/8+tq3j6/8+eq3j6/8+BIsQISNt1/SloUcHqo6/8n:BCKIwloUcwjTb9nrJF0NVz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1269910:IJVgFR1FZAkABAHiTmCykGAhKMaCEWBENEQohwRcB7kABEICoABMLCVyaAChQALCYTFwGCi5AmDKAC8qqsAigIiAQIzENABA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00003c3e78380000
Perceptual Hash:ce96316982b6c9cb
Difference Hash:0000602443630400
Wavelet Hash:0c0c7e5e7a3e0c0c
Color Hash:#e0856c

Other Hashes

Crop Resistant:0000602443630400

Scan History

Scan history not available

Unable to load historical scan data