Security Scan Report: auth-qas.sji.co.th

Redirected to: https://login.microsoftonline.com/62f65d3b-2562-4c78-9756-f2ca456a37cc/oauth2/v2.0/authorize?client_id=4c1ae4b1-9b88-4cac-ac32-85afe434a594&redirect_uri=https%3A%2F%2Fauth-qas.sji.co.th%2Fsignin-oidc&response_type=code&scope=openid%20profile%20offline_access&code_challenge=w2uEWDDLmox_1JVDo-9AmuXoRvniM7RpdHfavrIDm4w&code_challenge_method=S256&response_mode=form_post&nonce=639046374185325011.OGVkZWFhMWYtMmFjZS00ZmFiLTgzNGMtMzVjNGJmODc2MTUzMzRiMTdjODUtZWFhNC00NmE5LWFlYzUtOTFiMTgyMWZiM2Zm&client_info=1&x-client-brkrver=IDWeb.2.13.1.0&state=CfDJ8BGsob130etJtm-X4gX-UQUUOQzwjMh1GdiSS2azqI412Lle00phySWf5tquIVL5m-y2hs96TjWRSr4KdKidh6vRPpfe3otG-92Pw8iS7kMp8e8qxwnMcKb6PFS49K9KijR5u85CTRLA921MO0Vfk6rNDeljpUiMqlUVvK71BrN03mzwIPAkx94mCNnbkh1k-pRILDp73OKpSEND7irP2HXxItbpF_B6_eYjixz-IvK8xHfOfQsuckPAD0Rsa3VTYP_9JmPcTOgJ2Mt9m6pxcdcMAMvTxaepzqVjlh7nqYfrQg6HUvjzYn7rDvRe5luX6GB4JrItuL6LImy7dN_IBh6hj1FVRnwPRCg1gtojd-6xRENDG_mBQ5vLDbqwT2Cm1Q&x-client-SKU=ID_NET6_0&x-client-ver=6.32.0.0&sso_reload=true

Submitted: Jan 22, 2026, 12:10:12 AMCompleted: Jan 22, 2026, 12:11:27 AMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 4 countries across 7 domains to perform 34 HTTP transactions. The main domain is login.microsoftonline.com and was registered NaN years ago.

Submitted URL: http://auth-qas.sji.co.th/

Effective URL: https://login.microsoftonline.com/62f65d3b-2562-4c78-9756-f2ca456a37cc/oauth2/v2.0/authorize?client_id=4c1ae4b1-9b88-4cac-ac32-85afe434a594&redirect_uri=https%3A%2F%2Fauth-qas.sji.co.th%2Fsignin-oidc&response_type=code&scope=openid%20profile%20offline_access&code_challenge=w2uEWDDLmox_1JVDo-9AmuXoRvniM7RpdHfavrIDm4w&code_challenge_method=S256&response_mode=form_post&nonce=639046374185325011.OGVkZWFhMWYtMmFjZS00ZmFiLTgzNGMtMzVjNGJmODc2MTUzMzRiMTdjODUtZWFhNC00NmE5LWFlYzUtOTFiMTgyMWZiM2Zm&client_info=1&x-client-brkrver=IDWeb.2.13.1.0&state=CfDJ8BGsob130etJtm-X4gX-UQUUOQzwjMh1GdiSS2azqI412Lle00phySWf5tquIVL5m-y2hs96TjWRSr4KdKidh6vRPpfe3otG-92Pw8iS7kMp8e8qxwnMcKb6PFS49K9KijR5u85CTRLA921MO0Vfk6rNDeljpUiMqlUVvK71BrN03mzwIPAkx94mCNnbkh1k-pRILDp73OKpSEND7irP2HXxItbpF_B6_eYjixz-IvK8xHfOfQsuckPAD0Rsa3VTYP_9JmPcTOgJ2Mt9m6pxcdcMAMvTxaepzqVjlh7nqYfrQg6HUvjzYn7rDvRe5luX6GB4JrItuL6LImy7dN_IBh6hj1FVRnwPRCg1gtojd-6xRENDG_mBQ5vLDbqwT2Cm1Q&x-client-SKU=ID_NET6_0&x-client-ver=6.32.0.0&sso_reload=trueRedirected

AI Security Verdict

Low Risk

Confidence: 75%

3
Risk Score

Low risk; likely a legitimate SSO redirect but verify the site’s authenticity before entering credentials.

Risk Factors
Login form presented on a non‑official Microsoft domain
Safety Factors
Domain age > 20 years indicates established ownership
Final destination is the legitimate Microsoft login page
HTTPS used for the final URL
No malicious Indicators of Compromise detected
Domain age information unavailable

Details

Page Title

Sign in to your account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'auth-qas.sji.co.th' uses the Thai country-code top-level domain (.co.th) and includes subdomain 'auth-qas'. The core label 'sji' covers 3 characters containing 1 vowel alongside two consonants. Word splitting yields two words: s, ji. The median word length lands at 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://auth-qas.sji.co.th/

Page Load Overview

6.30s
Total Load Time
33
HTTP Requests
6
Domains
1005 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:109 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: webapp
Method: structural

All Detected Categories

No categories detected

Detected Features

Login Form
Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
913.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
420.190.159.131Ireland
440.126.31.131SingaporeUnknown
420.190.159.75Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
423.207.210.137Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
420.212.114.233Singapore, Singapore
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
420.189.173.7UnknownUnknown
337--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T193835BE57EA32937C24A00B9B5B57D06AB369A03884CCDB0F19CD9842FF671D8273653

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:lY8GLGGMcH3Vy3N2mr7ozTEyqU6MVnvnaloMPbbEahufiwlC:m8S3UR7XyS2LC

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:86301:YjG3IUxIQGE2khQFBlAhCREEY0BoBlgFA5uhDnAmmtgAx/DmAJ4ppAjAKQEANBBtIinBBJBlE8djaEuaiIDAbDApAMCAQBAC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0303070707030303
Perceptual Hash:a5cb6cea33751107
Difference Hash:27b6d6dede969696
Wavelet Hash:ff1f1f0f07070303
Color Hash:#56783a

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data