Security Scan Report: messages.uber.com

Redirected to:
https://auth.uber.com/v2/?breeze_init_req_id=e7871ab6-3bce-43a1-8b4c-1...
Site favicon
Submitted: Jul 20, 2026, 5:18:19 AMCompleted: Jul 20, 2026, 5:19:40 AMpubliccompleted

This website contacted 4 IPs in 1 country across 11 domains to perform 68 HTTP transactions. The main domain is auth.uber.com and was registered 31 years ago.

Submitted URL: https://messages.uber.com

Effective URL:

https://auth.uber.com/v2/?breeze_init_req_id=e7871ab6-3bce-43a1-8b4c-1...
Redirected

The Cisco Umbrella rank of the primary domain is #4,156 of the top 1 million websitesTop 10K Site

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

The site shows high JavaScript obfuscation but lacks forms, IoCs, or malware; treat as moderate risk.

Risk Factors (2)
High JavaScript obfuscation score
Multiple external domains loaded (e.g., accounts.google.com, appleid.cdn-apple.com)
Safety Factors (5)
Established domain age
Official Uber subdomain
No forms collecting credentials or payments
No threat‑intel or IDS detections
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 4 to 3
Domain age information unavailable

Details

Page Title

Ubersecondary capture

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'messages.uber.com' is registered with subdomain 'messages'. Its registrable label 'uber' stretches across 4 characters holding two vowels versus 2 consonants. Breaking it apart gives one word: uber. Expect 4 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://messages.uber.com

Page Load Overview

4.28s
Total Load Time
991 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:198 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network65% confidence
Type: spa
Method: ml+structural

All Detected Categories

social media network
65%
technology software
59%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1713.226.244.5Cloudfront · CDNUnited States
AS16509Amazon.com, Inc.
17142.251.151.119Google · CDNUnited States
AS15169Google LLC
17104.36.194.17Ashburn, Virginia, United States
AS396982Google LLC
17104.36.195.2Ashburn, Virginia, United States
AS209242Cloudflare London, LLC
684--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T189746586A3837AB7AC1681E56D316D3D08DC6CBDA6F90C98414B0F1DAD909F12FB52F1

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:nhIxa+pXUuiUirlllul6lylmlgOwcocXOzz3s3SxS2U2kSFiLSbnyrprC3mZ4Z7l:nhIxa+pXUuiUirlllul6lylmlgOwcocq

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:360559:N7tugIQIYBCYBUMBBQjAADiLBUtCggUDQBgAhIAwAiUAMJIDXdQWoDBCHABdgIgCCsZQskiIAW629RBIETAMFAsUQgoSEAVw

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffffffffff
Perceptual Hash:b3774c4c6633334c
Difference Hash:04000c0c0c0c0800
Wavelet Hash:00f3e7e7e0e0f0f0
Color Hash:#96e06c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data