Security Scan Report: ing-it-logon.surge.sh

Submitted: Oct 16, 2025, 8:16:45 AMCompleted: Oct 16, 2025, 8:17:44 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 4 HTTP transactions. The main domain is ing-it-logon.surge.sh.

Submitted URL: https://ing-it-logon.surge.sh/app/index.html

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing site impersonating Nickel; do not enter credentials.

Risk Factors
Credential harvesting form (password‑only input)
Brand impersonation of Nickel on a non‑official, unranked domain
Unranked domain presenting a trusted brand
Domain age information unavailable

Details

Page Title

Customer area : Manage your account | Nickel

Scan Type

public

Language

🇫🇷

French

(50% confidence)

Category

unknown

(0%)

Domain Information

Within the .sh country-code top-level domain, 'ing-it-logon.surge.sh' is registered, featuring subdomain 'ing-it-logon'. Its registrable label 'surge' stretches across 5 characters holding two vowels versus 3 consonants. Word splitting yields 1 word: surge. 'surge' is most common in Portuguese usage. Secondary signals appear in Portuguese (Brazil) and English.

Screenshot

Security scan screenshot of https://ing-it-logon.surge.sh/app/index.html

Page Load Overview

18.11s
Total Load Time
4
HTTP Requests
1
Domains
8 KB
Total Size

Language Analysis

Primary Language

🇫🇷French
Code: fr
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:fr
Detection Confidence:50%
Script Type:Latin
HTML Lang Attribute:fr-FR
Text Length:464 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4188.166.132.94Amsterdam, North Holland, Netherlands
AS14061DIGITALOCEAN-ASN
41--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19A431A77075E276894575CB65EA23A4A9F08E093D9439388F0BF19F08BCBED5845B38C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:dzszjdgbM/UHMheODLFvG1lhzt9ewdBI2MF19ToXJKkyoiYHdh:dI6Y2wk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:56905:FJoACIpQSSEwIoyGsfBEeiogELRHDIAuK2qTQhiuQYBQAFQIAYGIBmqheQEQQgGFAIVERJ4MADwVARAcqZMAYQQ5B0Ppi/RU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data