Scan report · about 1 month agoPublic
Verdict

Be careful — warning signs found

Automated

This site shows signs commonly seen in scams or impersonation, but we could not confirm it for certain. It may be a real threat, or it may be a legitimate site that simply looks unusual to our automated checks.

What to do

Avoid entering passwords or payment details until you are sure it is genuine. Open the company directly from its known website or app instead of this link. Check the evidence below and escalate to your analyst if unsure.

"Suspicious" is a caution, not a confirmation — it can be a false alarm. The evidence below explains why it was flagged.

Findings

Strongest first
Suspicious fileSuspicious content in the downloaded file
83391d21-b284-4054-b41d-db91b444ec99.html

Our Content Inspection engine downloaded the file this URL serves and analyzed it. The payload shows traits commonly seen in malware. Treat it as unsafe until verified.

Success

SHA-256 49dda36a00d122e1483503a32e222a4c583d0136bc14fa06e9912393da7c3318

InfoCross-domain scripts injected at runtime
4 script(s)

The page dynamically injected scripts from other domains. This is extremely common on legitimate sites (CDNs, analytics, asset domains) and is shown for context only.

Analyst noteNoisy by itself — a CDN/asset domain (e.g. a brand's own *.githubassets.com) is normal. Only meaningful if the source domain is unrelated/suspicious.

Infrastructure

IP
172.64.150.238CLOUDFLARENET - Cloudflare, Inc., US · AS13335US
TLS
CN=YE1, O=Let's Encrypt, C=US · expires Nov 20, 2026

WHOIS

Registrar
MarkMonitor Inc.
Created
Oct 18, 2012
Expires
Oct 18, 2027
Nameservers
kolton.ns.cloudflare.commonroe.ns.cloudflare.com
24 malicious9 suspicious

Hashes & fingerprints

Page capture

Live

Title “Device Authorization Flow - Auth0 Docs”

Engines

7 · time to verdict

Page

HTTP
200 · Completed
Title
Device Authorization Flow - Auth0 Docs
Load
4.45 s · 160 requests
Stack · 9CloudflareCloudflare Browser InsightsHSTSHTTP/3OneTrustOpen Graph