Security Scan Report: vanoijen.cloud

Redirected to: https://vanoijen.cloud/login

Site favicon
Submitted: Mar 3, 2026, 10:46:11 PMCompleted: Mar 3, 2026, 10:47:27 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 31 HTTP transactions. The main domain is vanoijen.cloud and was registered NaN years ago.

Submitted URL: https://vanoijen.cloud/

Effective URL: https://vanoijen.cloud/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Impersonates Nextcloud login on a brand‑new domain to harvest credentials – confirmed phishing scam.

Risk Factors
Brand impersonation (Nextcloud branding on unrelated domain)
Domain age < 7 days with credential‑harvesting form
Password field present on a newly registered domain
Domain not ranked in Cisco Umbrella (untrusted reputation)
Login page without any supporting organizational context
Domain age information unavailable

Details

Page Title

Login – Nextcloud

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(76%)

Domain Information

The domain name 'vanoijen.cloud' uses the .cloud top-level domain while skipping any subdomain. The second-level label 'vanoijen' is 8 characters long containing 4 vowels alongside 4 consonants. Word splitting yields 3 words: van, oi, jen. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://vanoijen.cloud/

Page Load Overview

3.97s
Total Load Time
29
HTTP Requests
1
Domains
5 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:283 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software76% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
76%
documentation technical
38%
real estate property
27%
corporate
25%

Detected Features

Login Form
Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
29104.21.90.101United States
AS13335Cloudflare, Inc.
291--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T184657FB1745832357933D32D718EDB69331AB10349119A99F5CE308C0FEB7ED62B26A9

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:YyugE31hNZtB4b6chxpBOSabYKgPZtB4bSUDqNkg2EeFlqkX2oXzgFhN3HkCADzA:o33t3ctkq3V7

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1454984:IRBCKCEAcLIbDpEwoAEEAPMSyE4KAEUI1STGEpQSgTAvjKCsNXKqoQwgYAEFsACQSoQNGN8REWIggEBLAOBMsRwjIVIDCACs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018181818000018
Perceptual Hash:99996666993399cc
Difference Hash:1432b2b2b20c0c32
Wavelet Hash:141c1c1c1c0c041c
Color Hash:#4044bf

Scan History

Scan history not available

Unable to load historical scan data