Security Scan Report: apl-ai.net

Redirected to:
https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_...
Submitted: Apr 19, 2026, 5:31:53 AMCompleted: Apr 19, 2026, 5:33:03 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 1 country across 6 domains to perform 1 HTTP transaction. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: https://apl-ai.net/oauth/outlook/start

Effective URL: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=666e94d8-d36e-4068-bb34-19e21531984f&redirect_uri=https%3A%2F%2Fapl-ai.net%2Foauth%2Foutlook%2Fcallback&response_type=code&scope=https%3A%2F%2Fgraph.microsoft.com%2FMail.Read+offline_access+openid+email+profile&prompt=consent&sso_reload=trueRedirected

AI Security Verdict

Moderate Risk

Confidence: 85%

5
Risk Score

The site impersonates Microsoft on an unranked, old domain and uses an OAuth flow to harvest credentials – high risk phishing.

Risk Factors
Unranked domain used for brand impersonation
Credential collection via OAuth redirect
Login form associated with Microsoft brand on non‑official domain
Safety Factors
Domain age > 20 years (well‑established)
No malicious Indicators of Compromise detected
No JavaScript malware patterns or IDS alerts
Established domain (8684 days old) with no strong malicious indicators — risk clamped from 8 to 5
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'apl-ai.net' uses the network infrastructure generic top-level domain (.net) while skipping any subdomain. Count 6 characters in 'apl-ai' containing three vowels alongside two consonants; bonus characters include one hyphen. Breaking it apart gives 3 words: apl, a, i. Median word length is one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://apl-ai.net/oauth/outlook/start

Page Load Overview

0.70s
Total Load Time
29
HTTP Requests
4
Domains
470 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:133 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
913.107.246.44United States
AS8075Microsoft Corporation
4172.67.142.70United States
AS13335Cloudflare, Inc.
451.11.192.50United StatesUnknown
420.190.160.66United StatesUnknown
423.53.42.120United StatesUnknown
440.126.31.0United StatesUnknown
296--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T183835BEA7EA22937828641B5B8B57D02AF3B69038D8CCC60F15CCD882FEB75D5027557

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:jhlj8GLG2SA/cAHXvhUoIyEk77gx2xpTvPoMmCBDEf8i70qX9C:v8dCUJ32RA5dC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:82803:uIZMgGDrQAIwlEowkBgmAAfkBxEyhgAEYoxEpA3ICgoIBJCB+GgjBCBiE+SgkgGAnBFCHCG1aHAMGSDg04AGASkQQCA4bDCO

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0010393b373f373f
Perceptual Hash:845971764699d96e
Difference Hash:88e4d2d3e5e6e6e6
Wavelet Hash:00003b3b373f373f
Color Hash:#2d56d2

Other Hashes

Crop Resistant:88e4d2d3e5e6e6e6

Scan History

Scan history not available

Unable to load historical scan data