Security Scan Report: lockid-obf.pages.dev

Site favicon
Submitted: Dec 30, 2025, 2:04:27 PMCompleted: Dec 30, 2025, 2:05:35 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 1 country across 3 domains to perform 6 HTTP transactions. The main domain is lockid-obf.pages.dev and was registered NaN years ago.

Submitted URL: https://lockid-obf.pages.dev/

AI Security Verdict

Confirmed Scam

Confidence: 98%

10
Risk Score

Confirmed phishing site harvesting credentials; avoid and report.

Risk Factors
Known malicious primary domain (pages.dev)
Credential harvesting form (username/password)
Unranked domain with login form
Potential brand impersonation on non‑official domain
Domain age information unavailable

Details

Page Title

LockID - Advanced Jar Obfuscator

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

documentation technical

(86%)

Domain Information

The domain name 'lockid-obf.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'lockid-obf'. The core label 'pages' covers 5 characters containing 2 vowels alongside 3 consonants. Breaking it apart gives 1 word: pages. Median word length is five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://lockid-obf.pages.dev/

Page Load Overview

2.34s
Total Load Time
6
HTTP Requests
3
Domains
141 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:3,546 chars
Detector Agreement:67%

Website Classification

Primary Category

documentation technical86% confidence
Type: webapp
Method: ml+structural

All Detected Categories

documentation technical
86%
technology software
53%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3142.251.141.67United States
AS15169GOOGLE
1172.66.44.168United States
AS13335CLOUDFLARENET
1142.250.186.138United States
AS15169GOOGLE
1172.66.47.88United States
AS13335CLOUDFLARENET
64--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F333C56969F704752913A27937EB53483B38E007C906CE1D7FED8244CF86AA85993BCD

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:nIhufQd8OLGiUVjgYqTh8n3sCyCaz83oY1O:nIhufQd8OLGiUBgYqg458H0

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:52558:EiUkCigQIBaoTSRBoRZEcWGQJIwsgSUEMnejIQFgJhGqqJDAYGSQGEEE4sVILgaeGhAZhAwQGzcASIAQIEAMcJsIBkIoKIRC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:061f1e3e78786060
Perceptual Hash:ccb6339926669999
Difference Hash:fef4b2e0b2b28082
Wavelet Hash:061f3f7e78787060
Color Hash:#79d2be

Other Hashes

Crop Resistant:fef4b2e0b2b28082

Scan History

Scan history not available

Unable to load historical scan data