Security Scan Report: aasdghftryii556hdd73646yyyuijjdhyttegrvvfedrtsnjjksliojhhh.pages.dev

Site favicon
Submitted: Sep 26, 2026, 1:50:37 AMCompleted: Sep 26, 2026, 1:52:45 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Fake 'Webmail Login' on a random pages.dev subdomain displaying cPanel branding and harvesting email/password via a JS-driven form — classic credential phishing. Do not enter credentials.

Risk Factors
Brand impersonation of cPanel webmail on a non-official, randomly-named domain
Password field collecting credentials on throwaway hosting infrastructure
Form action set to javascript:void(0) with JS-driven submission (typical phishing kit)
Cross-origin POST to ipapi.co for visitor IP/geolocation profiling
Unranked domain, unknown page age, no legitimate ownership signals (legitimacy score 5/100)
Domain age information unavailable

Details

Page Title

Webmail Login

Scan Type

public

Domain Name Analysis

You're looking at domain 'aasdghftryii556hdd73646yyyuijjdhyttegrvvfedrtsnjjksliojhhh.pages.dev' on the developer-focused generic top-level domain (.dev) and includes subdomain 'aasdghftryii556hdd73646yyyuijjdhyttegrvvfedrtsnjjksliojhhh'. The registrable portion 'pages' spans 5 characters split between two vowels and 3 consonants. Breaking it apart gives one word: pages. Expect five characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://aasdghftryii556hdd73646yyyuijjdhyttegrvvfedrtsnjjksliojhhh.pages.dev/

Page Load Overview

7.84s
Total Load Time
198 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:239 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content28% confidence
Type: webapp
Method: ml+structural+ocr_tiebreaker

All Detected Categories

adult content
28%
technology software
27%
documentation technical
27%
healthcare medical
26%
social_media
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
204--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17112950614FA0417218350B53ED3670A2DABC21B6A4ADD44BB6C87896FD7E89CD737C9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:X3O+LPkylJhFUXHFnDyJ9lFmvA6lkiHQS7lCOHQ/Jqg36olG:XEy1FWF6fp6l9lCAQRqtL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9562:hKBlETZCDLIJAkpICAYhaQAbSSGS1gTiIoEYUEMBsIAAgFA+oBpAIAon1CmpB1WgSIgmo4BEACGAyzJoBBhgewiEkVAoAtYC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7d3efffff
Perceptual Hash:b333c8cc66669999
Difference Hash:0c0c0c0c16080000
Wavelet Hash:2727272703270f0f
Color Hash:#53a9ac

Other Hashes

Crop Resistant:0c0c0c0c16080000

Scan History

Scan history not available

Unable to load historical scan data