Is auth.properties safe?

Active phishing sites with URL or domain containing this substring

phishunt is currently tracking 1 active phishing site whose URL contains auth.properties.

Matches
1
Brands targeted
1
First seen
2026-09-22
Last seen
2026-10-03
1
Active matches
1
Brands targeted
Microsoft 1

Saw auth.properties in the wild?

If a URL containing auth.properties appeared in your inbox or telemetry and you wanted to check whether it's a known phishing site, that's exactly the table below.

Substring match

phishunt indexes the full URL of every detected phishing site. This page shows every active record where the URL contains the exact substring auth.properties (case-insensitive).

Defensive use

Add the matching URLs to a blocklist, send takedown notices to the listed hosting providers, or open a ticket with the impersonated brand if applicable.

Matching active sites (1 of 1)

URL Brand IP Cert First seen Detail
https://auth.properties/E.rU-TDP5DOv4?/microsoftonline/mailbox/upgrade&userid=75468973984785978212312307887543 microsoft 212.104.128.1 WE1 2026-09-22 View →

← Back to phishunt.io · Docs · Search for "auth.properties"