Security Scan Report: umbrella-enr.pages.dev

Site favicon
Submitted: Dec 29, 2025, 3:33:13 AMCompleted: Dec 29, 2025, 3:34:47 AMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 2 countries across 15 domains to perform 57 HTTP transactions. The main domain is umbrella-enr.pages.dev and was registered NaN years ago.

Submitted URL: https://umbrella-enr.pages.dev/ru

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Site impersonates Ookla Speedtest and matches a malicious indicator; treat as high‑risk phishing.

Risk Factors
Malicious Indicators of Compromise detected for the primary domain
Brand impersonation/typosquatting of Ookla Speedtest
Unranked domain claiming a well‑known brand
Suspicious OCR content that does not match the advertised service
Domain age information unavailable

Details

Page Title

Speedtest от Ookla - Глобальный тест скорости широкополосного доступа

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

technology software

(73%)

Domain Information

You're looking at domain 'umbrella-enr.pages.dev' on the developer-focused generic top-level domain (.dev); it also runs on subdomain 'umbrella-enr'. Its registrable label 'pages' stretches across 5 characters holding 2 vowels versus three consonants. Segmentation suggests 1 word: pages. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://umbrella-enr.pages.dev/ru

Page Load Overview

6.91s
Total Load Time
57
HTTP Requests
0
Domains
N/A
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru
Text Length:2,461 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software73% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
73%
government public service
49%
documentation technical
44%
corporate business
37%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
19146.75.122.219Germany
AS54113FASTLY
11172.66.44.95UnknownUnknown
423.36.162.6Germany
AS20940Akamai International B.V.
454.234.12.96UnknownUnknown
3142.250.185.138UnknownUnknown
2178.250.1.12UnknownUnknown
252.45.51.250UnknownUnknown
1141.95.98.65UnknownUnknown
1104.18.87.42UnknownUnknown
1142.250.186.162UnknownUnknown
015--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14D1408F162B8536D908B979DEF36AA08770FE0B7F99649D5B79D4B644B83CD0E803404

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:/lkbAah4yves0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3WF:W1bebagbcVMaWUZD+3UbwnZCtUN29y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:197928:cMwQgAyiYvAA7fEMMBKCDUcQQw4AVIE6iLXBAFVAkzEgYMAE1MBcubAqASFEQpU0LllACUskLsDYuQCaUMXhCVkhOWkkAE8G

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fb9ddfdfdfd1101
Perceptual Hash:aad533f30ad522d1
Difference Hash:99353531312521a1
Wavelet Hash:6f1b1f1f3b3b0101
Color Hash:#7153ac

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data