Security Scan Report: tedteam.pages.dev

Submitted: Nov 20, 2025, 7:37:57 AMCompleted: Nov 20, 2025, 7:40:13 AMpubliccompleted
Loading additional data...

Summary

This website contacted 14 IPs in 2 countries across 4 domains to perform 13 HTTP transactions. The main domain is tedteam.pages.dev.

Submitted URL: https://tedteam.pages.dev/

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Site likely a phishing donation scam impersonating ACTED.

Risk Factors
Brand impersonation (ACTED) on an untrusted domain
Collection of payment information on a suspicious site
Unranked domain lacking reputation
Potentially newly registered domain
Generic hosting subdomain used for a charitable donation page
Domain age information unavailable

Details

Page Title

ACTED — Грошова допомога 8 400 грн

Scan Type

public

Language

🇺🇦

UK

(80% confidence)

Category

government public service

(71%)

Domain Information

You're looking at domain 'tedteam.pages.dev' on the developer-focused generic top-level domain (.dev), featuring subdomain 'tedteam'. Count 5 characters in 'pages' holding 2 vowels versus three consonants. Splitting it apart reveals 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://tedteam.pages.dev/

Page Load Overview

0.92s
Total Load Time
13
HTTP Requests
4
Domains
262 KB
Total Size

Language Analysis

Primary Language

🇺🇦Ukrainian
Code: uk
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:uk
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:uk
Text Length:1,264 chars
Detector Agreement:67%

Website Classification

Primary Category

government public service71% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
71%
healthcare medical
63%
adult content
59%
technology software
55%
finance banking
53%

Detected Features

Payment

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8216.58.212.131United States
AS15169GOOGLE
2172.66.45.45United States
AS13335CLOUDFLARENET
1104.26.2.143United States
AS13335CLOUDFLARENET
1142.250.181.234United States
AS15169GOOGLE
0104.26.3.143United States
AS13335CLOUDFLARENET
0172.66.46.211United States
AS13335CLOUDFLARENET
02606:4700:20::681a:38fUnited States
AS13335CLOUDFLARENET
02a00:1450:4001:829::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
0172.67.68.11United States
AS13335CLOUDFLARENET
02606:4700:310c::ac42:2ed3United States
AS13335CLOUDFLARENET
1314--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F6E2F72232B4046F2D93D0F7E681B718BA2AD0D3EE0BC77AB29D45516FD3DA0895B704

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:KIhn1R9ad+WbQSJVFMzlUugkkWVnrd2R0M:thWalxkWVnrd2R0M

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:33686:IvQFgFBgHmySwiAmLIGYMSjYoKRBgGQIQCAQgEojEigmQYAAEn4AiWHghECiZSCMpYEEJyyJAkTaQomDhFhQhIUBThgSQENQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff003c3c3400203c
Perceptual Hash:c2f4b8e9d2c2ccc3
Difference Hash:5555c9cdc9c1c9c1
Wavelet Hash:ff003c3c7c013d3d
Color Hash:#862d4f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data