Security Scan Report: wpp.cloud

Redirected to:
https://wpp.okta.com/oauth2/v1/authorize?client_id=0oa3ehjp55Zj5pi1U41...
Site favicon
Submitted: May 18, 2026, 2:47:19 PMCompleted: May 18, 2026, 2:48:51 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 1 country across 5 domains to perform 17 HTTP transactions. The main domain is wpp.okta.com and was registered NaN years ago.

Submitted URL: https://wpp.cloud

Effective URL: https://wpp.okta.com/oauth2/v1/authorize?client_id=0oa3ehjp55Zj5pi1U417&redirect_uri=https%3A%2F%2Fwppgroup.cloudflareaccess.com%2Fcdn-cgi%2Faccess%2Fcallback&response_type=code&scope=openid%20groups%20profile%20email&state=35e44946eadbeaedf2c6452d7f730b799cc9bd0bdfc0f073b7adccc71764764f.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

The Cisco Umbrella rank of the primary domain is #94,195 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

Critical IDS alerts and heavily obfuscated JavaScript indicate malware activity; treat the site as high‑risk.

Risk Factors
Critical IDS malware alerts
Highly obfuscated JavaScript code
Multiple external domains referenced (login.okta.com, ok9static.oktacdn.com, etc.)
Domain age information unavailable

Details

Page Title

WPP - Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(59%)

Domain Information

Within the .cloud top-level domain, 'wpp.cloud' is registered without a subdomain. The core label 'wpp' covers 3 characters with zero vowels and three consonants. Breaking it apart gives two words: wp, p. Average segment length settles at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://wpp.cloud

Page Load Overview

24.60s
Total Load Time
30
HTTP Requests
7
Domains
1.8 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:461 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software59% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
59%
documentation technical
56%
adult content
44%
phishing scam
30%
healthcare medical
29%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6172.64.151.147United States
AS13335Cloudflare, Inc.
6104.19.195.29United States
AS13335Cloudflare, Inc.
652.222.214.78United States
AS16509Amazon.com, Inc.
675.2.61.197United States
AS16509Amazon.com, Inc.
6104.18.36.109United States
AS13335Cloudflare, Inc.
305--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15A1319C2098DCEEE56C69D88953AA409354296C3C261EEC077FCCEC9AF98D4B742E55C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:I2ix/RQhwkC3B3ty58jB3ty58rDJB3ty58j/o:pi5RQbC0n4DG8o

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:44890:SCDDkAsQcgc8YlSeBQEAwhIAAQU1JEI2MHEAEoahkmiaAkJeAAEICWaoaBGaQiy8BQgHUg5qgLFIpCkTKMQM6IasDIkAAKAF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3f7fffffffffffff
Perceptual Hash:81010303073fffff
Difference Hash:c080000000000000
Wavelet Hash:3070f0f0f0f0f0f0
Color Hash:#935d1f

Other Hashes

Crop Resistant:c080000000000000

Scan History

Scan history not available

Unable to load historical scan data