Summary
API
This view is built from:
Scan result: counts, verdicts, details, IPs, technologies, hashes/api/v1/result/9bbdc3ae-68c2-4093-8f3e-cc438bd48987Domain and IP registration (RDAP)/api/v1/rdap/9bbdc3ae-68c2-4093-8f3e-cc438bd48987Certificate Transparency/api/v1/ct/ann.nl.tab.digitalHow often this domain was scanned/api/v1/domain/stats/fegtrfgujg.pages.devScan history for this domain/api/v1/domain/history/fegtrfgujg.pages.dev?limit=15This website contacted 8 IPs in 1 country across 2 domains to perform 28 HTTP transactions. The main domain is ann.nl.tab.digital.
Submitted URL: http://fegtrfgujg.pages.dev/
Effective URL:
https://ann.nl.tab.digital/login
AI Security Verdict
High Risk
Confidence: 88%
7
Risk Score
Likely phishing site impersonating Nextcloud; do not enter credentials.
Risk Factors (4)
Credential harvesting form on a suspicious, newly‑registered domain
Brand impersonation of Nextcloud on an unrelated domain
Unranked, low‑reputation domain
Absence of any malicious Indicators of Compromise (makes the phishing intent less hidden but still suspicious)
Domain age information unavailable
Details
Page Title
Login – Nextcloud
Scan Type
public
Domain Name Analysis
Domain 'fegtrfgujg.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'fegtrfgujg'. Count 5 characters in 'pages' with two vowels and 3 consonants. Breaking it apart gives 1 word: pages. No strong language cues emerged from the frequency lists.
Screenshot

Page Load Overview
1.01s
Total Load Time
1.6 MB
Total Size
Language Analysis
Primary Language
🇺🇸English
Code: enConfidence:80%
Script:Latin
Direction:ltr
Detection Details
HTML Lang Attribute:en
Text Length:358 chars
Detector Agreement:100%
Website Classification
Primary Category
technology software43% confidence
Type: webapp
Method: ml+structural
All Detected Categories
technology software
43%
corporate
25%
Detected Features
Login Form
Search
OG: website
Domain & IP Information
| Requests | IP Address | Location | AS Autonomous System |
|---|---|---|---|
| 26 | 172.67.130.170 | United States | AS13335CLOUDFLARENET |
| 3 | 104.21.3.117 | United States | AS13335CLOUDFLARENET |
| 3 | 2606:4700:3037::ac43:82aa | United States | AS13335CLOUDFLARENET |
| 3 | 2606:4700:3034::6815:375 | United States | AS13335CLOUDFLARENET |
| 3 | 172.66.45.42 | United States | AS13335CLOUDFLARENET |
| 3 | 2606:4700:310c::ac42:2d2a | United States | AS13335CLOUDFLARENET |
| 3 | 2606:4700:310c::ac42:2ed6 | United States | AS13335CLOUDFLARENET |
| 1 | 172.66.46.214 | United States | AS13335CLOUDFLARENET |
| 28 | 8 | - | - |
Content Similarity HashesFor malware variant detection
Image Hashes
Perceptual Hashes
Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A
Other Hashes
Crop Resistant:N/A
Scan History
Scan history not available
Unable to load historical scan data