Security Scan Report: jiasu.511649846.workers.dev

Redirected to:
https://jiasu.511649846.workers.dev/
Site favicon
Submitted: Sep 29, 2026, 3:24:09 PMCompleted: Sep 29, 2026, 3:24:43 PMpubliccompleted

This website contacted 7 IPs in 1 country across 5 domains to perform 39 HTTP transactions. The main domain is jiasu.511649846.workers.dev and was registered 29 years ago.

Submitted URL: http://jiasu.511649846.workers.dev/

Effective URL:

https://jiasu.511649846.workers.dev/
Redirected

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Non-Google workers.dev host clones Google's homepage, favicon and consent UI and uses a redirect interstitial — classic brand-impersonation phishing infrastructure. No credential form seen, but do not trust or interact.

Risk Factors (5)
Impersonation of Google's brand/interface on a domain that is not Google's
Google favicon served from a non-Google host
Automatic redirect interstitial typical of phishing/redirect chains
Free instant-publishing workers.dev subdomain with no verifiable age
Domain unranked and lacking any reputation
Domain age information unavailable

Details

Page Title

Google

Scan Type

public

Domain Name Analysis

Within the developer-focused generic top-level domain (.dev), 'jiasu.511649846.workers.dev' is registered and includes subdomain 'jiasu.511649846'. The core label 'workers' covers 7 characters holding 2 vowels versus five consonants. Word splitting yields one word: workers. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://jiasu.511649846.workers.dev/

Page Load Overview

2.04s
Total Load Time
932 KB
Total Size

Language Analysis

Primary Language

🇧🇬BG
Code: bg
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

HTML Lang Attribute:bg
Text Length:3,332 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate business45% confidence
Type: spa
Method: ml+structural

All Detected Categories

corporate business
45%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5172.217.208.94Google · CDNUnited States
AS15169Google LLC
5142.251.14.94Google · CDNUnited States
AS15169Google LLC
5142.251.14.95Google · CDNUnited States
AS15169Google LLC
5142.251.110.138Google · CDNUnited States
AS15169Google LLC
5188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
5142.251.110.139Google · CDNUnited States
AS15169Google LLC
397--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1AF647D316300B83BB523D9A0A2BB6F4E3C79F11BDD0A46B8B9D5E5309FE2DB2051565C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:zQpYsz+BsvDAkJZPp2MBFYJcGk9IniVJZeo:zQpYFsvDAkJZx2MBy2Gk9IiVJZeo

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:336636:CYOMcQjCKAA9gmhOYqBCFEAkCFLAUAaMYgMGO2JhF4GEGCLqQBJgYMqLCACCoC5QNCCCqAOLgjJmGeE0gFEBeAYRmUBAgWoN

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:183c3c3c3c3c3c18
Perceptual Hash:9bd9646465737451
Difference Hash:6069697969696969
Wavelet Hash:3c3c3c3c3c3c3c3c
Color Hash:#ac539c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data