Phishing detection: login.authorised-support.com

Microsoft
https://login.authorised-support.com/microsoft365/mfa/Y9IinybDOKJ6iJOhVzyjurYkMprt0uh_1UEQ=4BQ==1XFhSQ15CXldFblxXUG5dXlZYXw==/wnTk5ndScljeBjW3KbK1Avf42r-uArq4/ Access site
Screenshot
Screenshot of login.authorised-support.com
Investigate
Domain login.authorised-support.com1 CT host on apex
URL https://login.authorised-support.com/microsoft365/mfa/Y9Iin…
Cert Amazon RSA 2048 M04
Phishunt analysis Beta
45 high suspicion likely_phishingheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +4.5 Brand in title
  • +3.9 Password field
  • +3.0 OpenPhish
  • +2.2 Country mismatch
  • +1.5 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.6 Brand impersonation in path
  • +0.6 Long domain
  • +0.6 Login text in screenshot
  • +0.2 Suspicious TLD
  • +0.1 Hyphens
  • +0.1 Deep subdomain
  • Boosted to 45: Google-flagged credential form
19 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Impersonates Microsoft 365 MFA on a custom domain hosted on AWS, presenting a password input form. Flagged as social engineering by Google Safe Browsing and listed on OpenPhish. Likely harvests Microsoft 365 credentials and multi-factor authentication tokens via a fake sign-in page.

Brand impersonation in pathGoogle Safe BrowsingPassword field
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-30 · confidence 90%
Domain & Network
Whois
Registrar GoDaddy.com, LLC
Network
Country GermanyGermany
ASN AS16509
External detection Google Safe Browsing OpenPhish
GSB category: SOCIAL_ENGINEERING
CleanPhishTank · TweetFeed · urlscan.io
Report this phishing
Network / ASN Amazon.com, Inc.
Registrar GoDaddy.com, LLC

Tracked from 2026-08-30 13:06 UTC  ·  Last refreshed 2026-08-31 03:30 UTC