Security Scan Report: polestar.bbins.eu

Redirected to:
https://login.microsoftonline.com/f1289cc5-8456-4f28-8eab-700d1300fc5d...
Site favicon
Submitted: Jul 9, 2026, 4:38:31 AMCompleted: Jul 9, 2026, 4:39:42 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 3 countries across 4 domains to perform 2 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://polestar.bbins.eu

Effective URL: https://login.microsoftonline.com/f1289cc5-8456-4f28-8eab-700d1300fc5d/oauth2/v2.0/authorize?client_id=06106fdb-9e4b-4de2-a3ac-21fe79412eaa&redirect_uri=https%3A%2F%2Fpolestar.bbins.eu%2Fsignin-oidc&response_type=code&scope=openid%20profile%20offline_access&code_challenge=UIgfVm7upb6rAeiSorkqpKxP-2DVqEomxkZwEuVd1wY&code_challenge_method=S256&response_mode=form_post&nonce=639191687131501469.NTNkNThkMmEtNmM3OS00OTVhLWEzZTQtNTM1YTAzM2MyOTY4ZTRhYjFmMDYtZmU2YS00YzlmLTkzNTEtMzBiM2Q3OTYwMTRh&client_info=1&x-client-brkrver=IDWeb.2.13.4.0&state=CfDJ8CDlDSZgCn5HqkHZ6dAId-r6mvQ4mxyEI8yfBLBhcURl7FLq2NQsAJDQbiFeLHN2OOahtm8-vrll95v0dVdsS3hTgYpNOA4ZbsEEL2r36Mgd8snJ0cvmOwikxmofUASGiLN2Q50oVoRSZ9lz1Xol0zPoCs49vcZRdw2RXVzf8xUKFc7zOjrKI3S-3d5e5BDjo4M1QwvSHo_ybj-veImAnsaoCDw4YpqscBTS2ZxOJWkIcAdIOLoLe4vTjpPZ8t875eKIwDJHbGDg6CwQT_nLjJb2vB-yQMt3gU1jHEbu4pyLx-H1ovtlF4h122yIbr7-1tLZ5lqUuF0jbUjlco040UYrPYA0vVHazMzXf1XqjVbVbUuTJCxoxZkD0TNCeXOdUA&x-client-SKU=ID_NET6_0&x-client-ver=6.32.3.0&sso_reload=trueRedirected

The Cisco Umbrella rank of the primary domain is #595,682 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 85%

2
Risk Score

The site harvests Microsoft credentials on an unrelated, low‑rank domain and uses heavily obfuscated JavaScript, indicating a high‑risk phishing page.

Risk Factors
Credential collection on non‑official domain
Brand impersonation of Microsoft
Low domain ranking for brand claim
Highly obfuscated JavaScript
Safety Factors
Page served from an identity-provider sign-in endpoint (login.microsoftonline.com); a relying-party brand and login form here are normal SSO, not impersonation — risk clamped from 8 to 2
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Within the .eu country-code top-level domain, 'polestar.bbins.eu' is registered; it also runs on subdomain 'polestar'. Count 5 characters in 'bbins' split between one vowel and four consonants. Word splitting yields three words: bb, in, s. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://polestar.bbins.eu

Page Load Overview

1.34s
Total Load Time
17
HTTP Requests
6
Domains
750 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
520.90.134.40Azure · CLOUDLondon, England, United Kingdom
AS8075Microsoft Corporation
413.107.246.44Azure · CLOUDUnited States
AS8075Microsoft Corporation
440.126.31.73Office365 · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
420.190.159.75Azure · CLOUDDublin, Leinster, Ireland
AS8075Microsoft Corporation
174--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B7936CD9BFA72D37828641B6B0B62E02BE3A5947490CDD60F15CCC882FE6B4D9227517

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:FMII8GLG23WvDHVykoCIZ9Tjuokmap5vPoMLufn0tqdibC:6II8OWvD1ykUa/AQC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:89069:aJAPooBgM1QSC4ECJAQAg9GDWFZk2gQoTCGAHAW2AXoMQAEKqgjRQYAnGQQaAKAuQwAKEAMBmPBAHU4BQUQiQHRqBcgMQESr

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffc7595818180000
Perceptual Hash:98d836a6cdc9d8d8
Difference Hash:b09cb3b2b232de2c
Wavelet Hash:ffdfd9db5a180000
Color Hash:#783a4a

Scan History

Scan history not available

Unable to load historical scan data