Security Scan Report: sandpack.135.225.54.248.nip.io

Redirected to: https://login.microsoftonline.com/296e0803-3a2c-4bb0-a4ed-7fe6c0430106/oauth2/v2.0/authorize?approval_prompt=force&client_id=0a79eeaa-e7a1-4a08-a4b9-00885a183795&redirect_uri=https%3A%2F%2Fsandpack.135.225.54.248.nip.io%2Foauth2%2Fcallback&response_type=code&scope=openid+email+profile&state=RGGO__kuzwdcmwCyRbnFW-fuzElewjJm4cmuf0Tq3eY%3A%2F&sso_reload=true

Site favicon
Submitted: Jan 12, 2026, 1:16:17 PMCompleted: Jan 12, 2026, 1:17:41 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 3 countries across 6 domains to perform 1 HTTP transaction. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: http://sandpack.135.225.54.248.nip.io/

Effective URL: https://login.microsoftonline.com/296e0803-3a2c-4bb0-a4ed-7fe6c0430106/oauth2/v2.0/authorize?approval_prompt=force&client_id=0a79eeaa-e7a1-4a08-a4b9-00885a183795&redirect_uri=https%3A%2F%2Fsandpack.135.225.54.248.nip.io%2Foauth2%2Fcallback&response_type=code&scope=openid+email+profile&state=RGGO__kuzwdcmwCyRbnFW-fuzElewjJm4cmuf0Tq3eY%3A%2F&sso_reload=trueRedirected

The Cisco Umbrella rank of the primary domain is #376,334 of the top 1 million websites

AI Security Verdict

Safe Website

Confidence: 85%

2
Risk Score

Redirects to a legitimate Microsoft login; no immediate security threats detected.

Safety Factors
Redirect leads to legitimate Microsoft login page
Domain is older than 5 years
No payment or hidden password fields on the suspicious domain
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(78%)

Domain Information

You're looking at domain 'sandpack.135.225.54.248.nip.io' on the British Indian Ocean Territory country-code top-level domain (.io) and includes subdomain 'sandpack.135.225.54.248'. The second-level label 'nip' is 3 characters long with one vowel and 2 consonants. Word splitting yields 1 word: nip. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://sandpack.135.225.54.248.nip.io/

Page Load Overview

3.56s
Total Load Time
13
HTTP Requests
5
Domains
293 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software78% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

technology software
78%
social media network
29%

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5135.225.54.248Sweden
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
213.107.246.44United States
240.126.31.73SwedenUnknown
223.50.131.135NetherlandsUnknown
220.190.160.14UnknownUnknown
135--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B0734AEA7EB72D3A864640B5B4B56E02AE7A59039D48CD60F18CCD942FFB74D8137603

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:jQ8GLGGzzePhozTEyqU6MVnvnaloMPw/ELiiEC:E8MzehXyS2tC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:78420:YrQhlgRcOIEmMAYCChLAAEQg4ACCCERDEgDHID7BEmiYEBAOKCRgWEQiKsZDoAuCkgMCIJYgJeFowgsBuCWQSSAdRCQUgAVI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0010393b373f373f
Perceptual Hash:845971764699d96e
Difference Hash:88e4d2d3e5eee6e6
Wavelet Hash:00003b3b373f373f
Color Hash:#7dbf40

Other Hashes

Crop Resistant:88e4d2d3e5eee6e6

Scan History

Scan history not available

Unable to load historical scan data