Security Scan Report: ml-3rt.pages.dev

Site favicon
Submitted: Dec 31, 2025, 2:37:09 AMCompleted: Dec 31, 2025, 2:39:10 AMpubliccompleted
Loading additional data...

Summary

This website contacted 22 IPs in 3 countries across 15 domains to perform 69 HTTP transactions. The main domain is ml-3rt.pages.dev and was registered NaN years ago.

Submitted URL: https://ml-3rt.pages.dev/nl

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Site is high‑risk phishing; malicious domain and brand impersonation detected.

Risk Factors
Malicious primary domain (pages.dev) indicator
Phishing brand impersonation (Ookla Speedtest)
Unranked/low‑reputation domain
Multiple redirects suggesting obfuscation
Error message that may entice users to retry
Domain age information unavailable

Details

Page Title

Speedtest door Ookla - De wereldwijde breedbandsnelheidstest

Scan Type

public

Language

🇳🇱

Dutch

(80% confidence)

Category

technology software

(51%)

Domain Information

You're looking at domain 'ml-3rt.pages.dev' on the developer-focused generic top-level domain (.dev) and includes subdomain 'ml-3rt'. Count 5 characters in 'pages' holding two vowels versus 3 consonants. It segments into 1 word: pages. The median word length lands at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ml-3rt.pages.dev/nl

Page Load Overview

38.11s
Total Load Time
57
HTTP Requests
18
Domains
2.6 MB
Total Size

Language Analysis

Primary Language

🇳🇱Dutch
Code: nl
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:nl
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:nl
Text Length:3,581 chars
Detector Agreement:60%

Website Classification

Primary Category

technology software51% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
51%
documentation technical
36%
download file sharing
31%
government public service
31%
corporate
25%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1518.245.31.92Sweden
2146.75.122.219Germany
2104.18.86.42United States
AS13335CLOUDFLARENET
254.235.246.67United States
234.120.133.55Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
223.56.202.65Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
223.36.162.6Unknown
2172.66.44.189United States
AS13335CLOUDFLARENET
2142.250.184.226Unknown
2142.250.186.106Unknown
5722--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T103F308F522B8535D908B875DEF36B608630FE0B7B5A689D5BB5D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:EsM+WWH4yvZs0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3ss:UgbZbagbcVMaWUZD+3UbwnZLU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168424:IYMqJFACCgBSFUqKA0AlhDKDBAg31GASgSCzGEMKIecWA6yAgmABQdnIgKoGEEAEoAgEhSAhJgBGUViFBhQAsKoUEAKByAhF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad52af133c58a55
Difference Hash:9971616111010101
Wavelet Hash:7f3b3b3b073f0100
Color Hash:#473a78

Other Hashes

Crop Resistant:9971616111010101

Scan History

Scan history not available

Unable to load historical scan data