Security Scan Report: esupport-view-bff-mock-pre-641.dcr.sehlat.io

Redirected to: https://login.microsoftonline.com/e20f6db1-0c59-4d26-b56c-b36bc14b34a2/oauth2/v2.0/authorize?client_id=dfe95be3-2a70-4878-9b46-1cfea628f8bd&redirect_uri=https%3A%2F%2Fid.sehlat.io%2Flogin%2Fcallback&response_type=code&scope=openid+profile+email+https%3A%2F%2Fgraph.microsoft.com%2F.default&state=k0YwTRESrFHlMkV_AxEVGJ_IbA-C8Rf1xUfWexMUwqhNJ2N8KjjaQrn2YHU5TNiCdrrxWB8aOFhjnYeGmIXOrOFCZEwLiIqD217fK2h1PkaobOT6LQgLs0M_MfyALpO4fw73Dsw663F-zoTHg_ntJZumMrPfjYblH0oIDR2gkFKYSLW3ZrcBUALA_NZ_63q20ATHeLNNVfF9lmQwYpJCuAuTYV1dXqU36wQwn6FZs6q78yxdw2jSx_qURJZrmDgGZPnNR5o-sm2ATfW2sxZWNlglRbn-_5f5Xp0RqRFSTsDnCw8S-kQPOqQ1OA4d2P3eKE0__KTb7IA65cJeS6U3yMIHkQqrfnDkuHb3jayVZw_alDlW2X4yBG_CVI4Bvj04VcsrTwR7pAOwaG9_AIzVQfiHkL4enJJswD9YSzs1fud4ZGSmH4ecM-COaImx9klvzKeqEHw1i-qEubv6Ljp8HAMm3V8KVIL3nzGj9TjMYt4d06jJiXl7XZv6stovkp7zlfMTDW_eclzHH0y3AulPVdnzNStfRGWMgqtPiV_MPWG-v6TWwah0thS1wseGWFHjCdFnFjGGOf7BvjXfvrW8GZxc-s0cDoX0tKMB0kgaa6a_KQgSCTrU-41cMNfaGsHYgJxGMU1Wr3ueGdllotVIRbeSkG7M-FCs6UIPZy7JXHBKuNp9ute-fa4dgNwOf-R3NSIutPP9zcEwRb5viOOa3gA-2yelNkv_0Z4e88O236CyBgDSso5KYjRAryYAQnQuzvXMdkFLm482tGefATSj5tL_DEClgJcMjJBhFHxbOxV74lSLVvk67oKxc27MqT5fGdyoSTsCOxQyz5RD_J0r7W4BrIL6tDk0xzffWVXPRaul6nX8Ewfa2WvFCuy30IvGI_9i5sY4RkE5MK8bmDqo3k-0Kqy9FMeafM6DuC8KDiqTuOGQndnI2ljfxEDG5zZcmdrHEDAilLzenr9XvN6zP67wkXdofmswJaRC-mVy5xq3IKwUmUDujfVJj-ANOCCv7DZMdWT2cVEIvGBxDiVWyf4SfI-CA7kgYHnqVoonMXrQrY-qYBWNoRgwljDnynqQxwnGrhaGsNjV_eOKCyUJPuFDC4r_uClSE4H9XxxBu4hz_WE5KLqwYeMoeek1yxsF162V-oCwbOLUplKNBR5EPVfGLWGSmIsclcs_D3RvCgjYX5IwFpoBgbU1B_l81mRBfiVe-cAD_NXgZ25Gut8RL4-dab-T652R5gl4oq_mUjw2WrEgpRyhCsej67KIcWCMjbHprngkA8QbKhQCAV9PkKXX33py_-Da62VUPLtkdN6pQyxWN3iYJsYu8k77YK_NZVQ4amgGpnvazKahwuOpOnYkvFDhXfKRIY4AEu1pRHOdbTdKWzOUW7revN7me4qe&sso_reload=true

Site favicon
Submitted: Jan 4, 2026, 9:40:45 PMCompleted: Jan 4, 2026, 9:41:53 PMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 4 countries across 8 domains to perform 35 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: http://esupport-view-bff-mock-pre-641.dcr.sehlat.io/

Effective URL: https://login.microsoftonline.com/e20f6db1-0c59-4d26-b56c-b36bc14b34a2/oauth2/v2.0/authorize?client_id=dfe95be3-2a70-4878-9b46-1cfea628f8bd&redirect_uri=https%3A%2F%2Fid.sehlat.io%2Flogin%2Fcallback&response_type=code&scope=openid+profile+email+https%3A%2F%2Fgraph.microsoft.com%2F.default&state=k0YwTRESrFHlMkV_AxEVGJ_IbA-C8Rf1xUfWexMUwqhNJ2N8KjjaQrn2YHU5TNiCdrrxWB8aOFhjnYeGmIXOrOFCZEwLiIqD217fK2h1PkaobOT6LQgLs0M_MfyALpO4fw73Dsw663F-zoTHg_ntJZumMrPfjYblH0oIDR2gkFKYSLW3ZrcBUALA_NZ_63q20ATHeLNNVfF9lmQwYpJCuAuTYV1dXqU36wQwn6FZs6q78yxdw2jSx_qURJZrmDgGZPnNR5o-sm2ATfW2sxZWNlglRbn-_5f5Xp0RqRFSTsDnCw8S-kQPOqQ1OA4d2P3eKE0__KTb7IA65cJeS6U3yMIHkQqrfnDkuHb3jayVZw_alDlW2X4yBG_CVI4Bvj04VcsrTwR7pAOwaG9_AIzVQfiHkL4enJJswD9YSzs1fud4ZGSmH4ecM-COaImx9klvzKeqEHw1i-qEubv6Ljp8HAMm3V8KVIL3nzGj9TjMYt4d06jJiXl7XZv6stovkp7zlfMTDW_eclzHH0y3AulPVdnzNStfRGWMgqtPiV_MPWG-v6TWwah0thS1wseGWFHjCdFnFjGGOf7BvjXfvrW8GZxc-s0cDoX0tKMB0kgaa6a_KQgSCTrU-41cMNfaGsHYgJxGMU1Wr3ueGdllotVIRbeSkG7M-FCs6UIPZy7JXHBKuNp9ute-fa4dgNwOf-R3NSIutPP9zcEwRb5viOOa3gA-2yelNkv_0Z4e88O236CyBgDSso5KYjRAryYAQnQuzvXMdkFLm482tGefATSj5tL_DEClgJcMjJBhFHxbOxV74lSLVvk67oKxc27MqT5fGdyoSTsCOxQyz5RD_J0r7W4BrIL6tDk0xzffWVXPRaul6nX8Ewfa2WvFCuy30IvGI_9i5sY4RkE5MK8bmDqo3k-0Kqy9FMeafM6DuC8KDiqTuOGQndnI2ljfxEDG5zZcmdrHEDAilLzenr9XvN6zP67wkXdofmswJaRC-mVy5xq3IKwUmUDujfVJj-ANOCCv7DZMdWT2cVEIvGBxDiVWyf4SfI-CA7kgYHnqVoonMXrQrY-qYBWNoRgwljDnynqQxwnGrhaGsNjV_eOKCyUJPuFDC4r_uClSE4H9XxxBu4hz_WE5KLqwYeMoeek1yxsF162V-oCwbOLUplKNBR5EPVfGLWGSmIsclcs_D3RvCgjYX5IwFpoBgbU1B_l81mRBfiVe-cAD_NXgZ25Gut8RL4-dab-T652R5gl4oq_mUjw2WrEgpRyhCsej67KIcWCMjbHprngkA8QbKhQCAV9PkKXX33py_-Da62VUPLtkdN6pQyxWN3iYJsYu8k77YK_NZVQ4amgGpnvazKahwuOpOnYkvFDhXfKRIY4AEu1pRHOdbTdKWzOUW7revN7me4qe&sso_reload=trueRedirected

AI Security Verdict

Safe Website

Confidence: 92%

2
Risk Score

Legitimate OAuth login flow; no immediate security concerns detected.

Safety Factors
Well‑established domain (registered in 2002)
Redirects terminate at a legitimate Microsoft login page
No payment or sensitive data collection beyond standard Microsoft credentials
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'esupport-view-bff-mock-pre-641.dcr.sehlat.io' on the British Indian Ocean Territory country-code top-level domain (.io); it also runs on subdomain 'esupport-view-bff-mock-pre-641.dcr'. The second-level label 'sehlat' is 6 characters long with two vowels and four consonants. Breaking it apart gives 3 words: se, hl, at. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://esupport-view-bff-mock-pre-641.dcr.sehlat.io/

Page Load Overview

1.82s
Total Load Time
20
HTTP Requests
8
Domains
414 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
240.68.146.194Amsterdam, North Holland, Netherlands
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
213.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
240.126.32.133IrelandUnknown
220.190.159.64Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
220.101.155.1Amsterdam, North Holland, Netherlands
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
220.190.159.71UnknownUnknown
22.16.241.207UnknownUnknown
22.16.241.211Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
220.190.160.130UnknownUnknown
213.107.213.44UnknownUnknown
2010--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T100A37DD67E722937864A85B8B4767E02AA3E49038908DC70F59CCD843FFA75D8537A03

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:jQWm8GLGGCbh/WSvmzzTEyqU6MVnvnaloMPt5EqrdiTC:0Wm83bh/W+mmyS2DC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:98523:EDwEWQTgoMmQAFKCFgUiiKQAggGQCT3ojZmJ6BSRCJnAEBiFKHoOJEKJkKAJCDYQIYM4wAAJAyBoAKIlRMWXIZGkBGkqQBBJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fffffe1818180000
Perceptual Hash:9dc8233ecdd1998c
Difference Hash:204db23232325cfe
Wavelet Hash:ffffff9a18180000
Color Hash:#e06cb7

Scan History

Scan history not available

Unable to load historical scan data