Security Scan Report: xilai.pages.dev

Site favicon
Submitted: Dec 5, 2025, 6:26:02 AMCompleted: Dec 5, 2025, 6:28:45 AMpubliccompleted
Loading additional data...

Summary

This website contacted 163 IPs in 7 countries across 53 domains to perform 156 HTTP transactions. The main domain is xilai.pages.dev.

Submitted URL: https://xilai.pages.dev/ko

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Site mimics Speedtest branding on a non‑official, unranked domain – high‑risk phishing.

Risk Factors
Brand impersonation on an unrelated domain
Unranked domain presenting a well‑known brand
Very low legitimacy signals
New or unknown domain age
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(54% confidence)

Category

other

(28%)

Domain Information

The domain 'xilai.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'xilai'. Count 5 characters in 'pages' split between two vowels and 3 consonants. Tokenizing the label suggests one word: pages. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xilai.pages.dev/ko

Page Load Overview

1.05s
Total Load Time
156
HTTP Requests
53
Domains
3.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:54%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:54%
Script Type:Latin
HTML Lang Attribute:ko
Text Length:2,294 chars
Detector Agreement:100%
Language mismatch: Declared as ko but detected as en

Website Classification

Primary Category

other28% confidence
Type: spa
Method: ml+structural

All Detected Categories

other
28%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1563.208.81.115Ashburn, Virginia, United States
AS14618AMAZON-AES
26146.75.122.219Frankfurt am Main, Hesse, Germany
AS54113FASTLY
1234.240.33.144Dublin, Leinster, Ireland
AS16509AMAZON-02
123.79.16.5Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
11172.66.44.89United States
AS13335CLOUDFLARENET
7146.75.122.132Frankfurt am Main, Hesse, Germany
AS54113FASTLY
6104.18.87.42United States
AS13335CLOUDFLARENET
623.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
5100.25.156.137Ashburn, Virginia, United States
AS14618AMAZON-AES
4216.239.32.36United States
AS15169GOOGLE
156163--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10124F6A63668671CD1CB875C9E32B644770BA4ABFDB388DCF64D8B784B866E1CC03544

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:zonwucP4yvNYypkxPSEz9JAIs0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslB:+MbvcbagbcVMaWUZD+3UbwnZJEOU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:223219:KETZeICAJBJARg0kQxCjrtgOyVgwDluHACGESiLcggEAJElIBAi0AAnQBAAygCIDhFTIYUhogFCKsPGKB1kkgAwbSIZhZm2/

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:8d71616111010101
Wavelet Hash:fffb3939033b0100
Color Hash:#64d22d

Other Hashes

Crop Resistant:8d71616111010101

Scan History

Scan history not available

Unable to load historical scan data