Security Scan Report: babi123.pages.dev

Site favicon
Submitted: Jul 29, 2026, 2:47:25 AMCompleted: Jul 29, 2026, 2:49:24 AMpubliccompleted

Summary

This website contacted 1 IP in 1 country across 23 domains to perform 2 HTTP transactions. The main domain is babi123.pages.dev and was registered NaN years ago.

Submitted URL: https://babi123.pages.dev/slots/playstar?hot=Mahjong+Ways+3%2B_Black+limited

AI Security Verdict

Low Risk

Confidence: 78%

3
Risk Score

Page hosts credential‑stealing forms on an unknown, unranked subdomain; treat as high‑risk phishing.

Risk Factors
Credential harvesting form on unknown‑age subdomain
Cross‑origin form submission to unrelated domain
Unranked hosting platform subdomain
Safety Factors
No malicious JavaScript YARA matches
No IDS alerts or Safe‑Browsing threats
No payment fields or brand impersonation
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 7 to 3
Domain age information unavailable

Details

Page Title

KIXPLAY KOX NGANU

Scan Type

public

Language

🇺🇸

English

(83% confidence)

Category

social_media

(50%)

Domain Information

Domain 'babi123.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'babi123'. Count 5 characters in 'pages' containing two vowels alongside three consonants. Splitting it apart reveals one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of ajax.googleapis.com

Page Load Overview

6.84s
Total Load Time
152
HTTP Requests
23
Domains
20.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:83%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:83%
Script Type:Latin
HTML Lang Attribute:id-ID
Text Length:17 chars
Detector Agreement:100%
Language mismatch: Declared as id-ID but detected as en

Website Classification

Primary Category

social_media50% confidence
Type: webapp
Method: structural

All Detected Categories

social_media
50%
forum
40%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
152172.66.46.242Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1521--

Page Statistics

152
Requests
23
Unique Domains
23.5 MB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12B74453100F6562601A3A1E06E616F1BFE82EB4BCA0B4E4472FC4BD99FD3E91CD67558

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:S3tjBhTXwtRvfcb5cEjvfcb5cEEA+b2OcZa5kicQA6Lp8qF0e:S3Zst6E4b2OvLp8q+e

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:367453:CfAKBlOjBRBCZWERLFBBILBQx3lBnRJKW2EgIaQBhQSSBoADhBplaqDCRgIlCKMowCKdDAgAEgLiDQyCxgsgjMqCItCgokAo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fffffffffffffff
Perceptual Hash:83030707070f3fff
Difference Hash:8000000000000000
Wavelet Hash:70f0f0f0f0f0f0f0
Color Hash:#6ccae0

Other Hashes

Crop Resistant:8000000000000000

Scan History

Scan history not available

Unable to load historical scan data