Security Scan Report: app-dev.deutschmuehle.de

Redirected to: https://login.microsoftonline.com/280dcf05-aca6-42f3-98ee-5ba926b1d980/oauth2/authorize?client_id=00000007-0000-0000-c000-000000000000&response_type=code%20id_token&scope=openid%20profile&state=OpenIdConnect.AuthenticationProperties%3DMAAAAIxlZc8bKRHxjHoAIkjlrZIW6XezefBA5x93yKkL8YFHgQrE_s5QHKbJ6I4BIcJR3AEAAAABAAAACS5yZWRpcmVjdCJodHRwczovL2RtLWRldi5jcm0xNi5keW5hbWljcy5jb20v%26ReplyUrl%3DMAAAAIxlZc8bKRHxjHoAIkjlrZKk4wVnqvLceqbITgKjpK5Ig33vGzYvqM24IbZqPYqcv2h0dHBzOi8vZ2VjLS1nZXJjcm1saXZlc2c2MDcuY3JtMTYuZHluYW1pY3MuY29tLw%253d%253d%26RedirectTo%3DMAAAAIxlZc8bKRHxjHoAIkjlrZJHZ%252bbZDYz9rDCkbZsopr0RRB6LA8sMLoyZEZ4IEEL1WWh0dHBzOi8vZG0tZGV2LmNybTE2LmR5bmFtaWNzLmNvbS8%253d%26RedirectToForMcas%3Dhttps%253a%252f%252fdm-dev.crm16.dynamics.com%252f&response_mode=form_post&nonce=639099491135764589.MDkyYWM4MDgtMzhmZS00NGY5LWJhYzAtOWFhY2E2ZWJiMTYwZjcxMWY0MTQtYTQ0Mi00MThlLWJmNGItYWEyMjY2NjMyNGJk&redirect_uri=https%3A%2F%2Fgec--gercrmlivesg607.crm16.dynamics.com%2F&max_age=86400&claims=%7B%22id_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D&x-client-SKU=ID_NET472&x-client-ver=8.14.0.0&sso_reload=true

Submitted: Mar 24, 2026, 11:38:31 AMCompleted: Mar 24, 2026, 11:39:49 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 3 countries across 6 domains to perform 1 HTTP transaction. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: http://app-dev.deutschmuehle.de/

Effective URL: https://login.microsoftonline.com/280dcf05-aca6-42f3-98ee-5ba926b1d980/oauth2/authorize?client_id=00000007-0000-0000-c000-000000000000&response_type=code%20id_token&scope=openid%20profile&state=OpenIdConnect.AuthenticationProperties%3DMAAAAIxlZc8bKRHxjHoAIkjlrZIW6XezefBA5x93yKkL8YFHgQrE_s5QHKbJ6I4BIcJR3AEAAAABAAAACS5yZWRpcmVjdCJodHRwczovL2RtLWRldi5jcm0xNi5keW5hbWljcy5jb20v%26ReplyUrl%3DMAAAAIxlZc8bKRHxjHoAIkjlrZKk4wVnqvLceqbITgKjpK5Ig33vGzYvqM24IbZqPYqcv2h0dHBzOi8vZ2VjLS1nZXJjcm1saXZlc2c2MDcuY3JtMTYuZHluYW1pY3MuY29tLw%253d%253d%26RedirectTo%3DMAAAAIxlZc8bKRHxjHoAIkjlrZJHZ%252bbZDYz9rDCkbZsopr0RRB6LA8sMLoyZEZ4IEEL1WWh0dHBzOi8vZG0tZGV2LmNybTE2LmR5bmFtaWNzLmNvbS8%253d%26RedirectToForMcas%3Dhttps%253a%252f%252fdm-dev.crm16.dynamics.com%252f&response_mode=form_post&nonce=639099491135764589.MDkyYWM4MDgtMzhmZS00NGY5LWJhYzAtOWFhY2E2ZWJiMTYwZjcxMWY0MTQtYTQ0Mi00MThlLWJmNGItYWEyMjY2NjMyNGJk&redirect_uri=https%3A%2F%2Fgec--gercrmlivesg607.crm16.dynamics.com%2F&max_age=86400&claims=%7B%22id_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D&x-client-SKU=ID_NET472&x-client-ver=8.14.0.0&sso_reload=trueRedirected

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Phishing page impersonating Microsoft login; do not enter credentials.

Risk Factors
Brand impersonation (Microsoft) on an unrelated domain
Cross‑origin credential form (email + password) to a different domain
Unranked domain presenting a major brand login page
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Domain 'app-dev.deutschmuehle.de' uses the German country-code top-level domain (.de); it also runs on subdomain 'app-dev'. The second-level label 'deutschmuehle' is 13 characters long holding five vowels versus eight consonants. It segments into 4 words: deutsch, mu, e, hle. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://app-dev.deutschmuehle.de/

Page Load Overview

0.71s
Total Load Time
21
HTTP Requests
6
Domains
450 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
677.76.217.20Fulda, Hesse, Germany
AS8823Rockenstein AG
320.190.160.14Netherlands
340.126.32.68Germany
313.107.246.44United States
AS8075Microsoft Corporation
320.50.73.10UnknownUnknown
34.182.45.55Frankfurt am Main, Hesse, Germany
AS8075Microsoft Corporation
216--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CA936CE97EB3293B82468075B5757E065A3A6D03C88CCDB4F05CD9882FFA71D9123653

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:lfRy8GLG293A3oK/GFUrnaURrOCuP4kRjhsHHoIyEk77gx2xpTvPoMmCf2EoxIiC:tRy8RGUW4tHJ32RAmQC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:89305:EIoKA+aBQXBXFgSAgHOICECSBbyuAAICbKroh4SjqSEPoVN0wAAU0JADxCMRU3pAYwZICjEGACgUJAfMB4NgrCAIAIHnVAGK

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:003e3f3f373fff00
Perceptual Hash:85d970e62e9919e6
Difference Hash:c8e6d2d2e4c6e6e7
Wavelet Hash:003a3b3f373f7700
Color Hash:#4055bf

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data