Security Scan Report: 908-a0d.pages.dev

Redirected to:
https://908-a0d.pages.dev/
Site favicon
Submitted: Jan 3, 2026, 12:35:18 AMCompleted: Jan 3, 2026, 12:36:32 AMpubliccompleted
Loading additional data...

Summary

This website contacted 22 IPs in 3 countries across 15 domains to perform 53 HTTP transactions. The main domain is 908-a0d.pages.dev and was registered NaN years ago.

Submitted URL: http://908-a0d.pages.dev/

Effective URL: https://908-a0d.pages.dev/Redirected

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Site impersonates Ookla Speedtest and is linked to a known malicious domain; treat as high‑risk phishing.

Risk Factors
Primary domain flagged as malicious Indicators of Compromise
Brand impersonation of Ookla Speedtest on an unrelated domain
Unranked domain with low reputation
Use of a generic hosting subdomain (pages.dev) commonly abused for phishing
Domain age information unavailable

Details

Page Title

Speedtest by Ookla - The Global Broadband Speed Test

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(29%)

Domain Information

The domain name '908-a0d.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain '908-a0d'. The core label 'pages' covers 5 characters holding two vowels versus three consonants. Tokenizing the label suggests one word: pages. Average segment length settles at five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://908-a0d.pages.dev/

Page Load Overview

10.53s
Total Load Time
52
HTTP Requests
18
Domains
2.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,368 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software29% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
29%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10104.18.86.42United States
AS13335CLOUDFLARENET
252.200.159.203Ashburn, Virginia, United States
AS14618AMAZON-AES
264.233.166.84United States
AS15169GOOGLE
2146.75.122.219Frankfurt am Main, Hesse, Germany
AS54113FASTLY
2172.66.44.159United States
AS13335CLOUDFLARENET
2104.18.87.42Unknown
223.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2216.58.206.42Unknown
218.245.31.123United States
AS16509AMAZON-02
2141.95.33.120Unknown
5222--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T133F308F522BC535D908B875DEF36B608630FE0B7B5A689D5BB5D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:xSCEnFs4yv4s0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3aT:bhb4bagbcVMaWUZD+3UbwnZTH

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168437:AOiYAcFVkMcLYBkiIGIQmiJUCQKACAQgAYowewgF6BGAwHMgmNDA9hBBg7woAtssIhHQIyTRBgDQMSrOAyGMN4IQQIKFIrRF

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:9971616111010101
Wavelet Hash:6f3b3b3b01310100
Color Hash:#6c96e0

Other Hashes

Crop Resistant:9971616111010101

Scan History

Scan history not available

Unable to load historical scan data