Security Scan Report: reopens.pages.dev

Site favicon
Submitted: Dec 11, 2025, 9:28:17 PMCompleted: Dec 11, 2025, 9:29:07 PMpubliccompleted
Loading additional data...

Summary

This website contacted 16 IPs in 3 countries across 4 domains to perform 5 HTTP transactions. The main domain is reopens.pages.dev and was registered NaN years ago.

Submitted URL: https://reopens.pages.dev/

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Site impersonates Spotify on an unranked domain; likely phishing.

Risk Factors
Brand impersonation (Spotify) on an unranked domain
Use of a non‑official domain for Spotify branding
Domain age information unavailable

Details

Page Title

Spotify – Redirect...

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Within the developer-focused generic top-level domain (.dev), 'reopens.pages.dev' is registered and includes subdomain 'reopens'. The core label 'pages' covers 5 characters split between two vowels and 3 consonants. Tokenizing the label suggests one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://reopens.pages.dev/

Page Load Overview

0.66s
Total Load Time
5
HTTP Requests
4
Domains
368 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:34 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5149.154.167.220London, England, United Kingdom
AS62041Telegram Messenger Inc
0172.66.44.190United States
AS13335CLOUDFLARENET
0162.159.153.4United States
AS13335CLOUDFLARENET
0172.67.69.226United States
AS13335CLOUDFLARENET
0162.159.152.4United States
AS13335CLOUDFLARENET
02001:67c:4e8:f004::9Amsterdam, North Holland, Netherlands
AS62041Telegram Messenger Inc
0104.26.8.44United States
AS13335CLOUDFLARENET
0172.66.47.66United States
AS13335CLOUDFLARENET
02606:4700:310c::ac42:2f42United States
AS13335CLOUDFLARENET
0104.26.9.44United States
AS13335CLOUDFLARENET
516--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11251745F55A300566B13A0613B5BE20821B7E417A80EC9267FCDA3D98F852BCC4F27CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:nYZ6Dso3lrV+Q36qRnidgLFOdoI8XnURItY9kAaFktLkAalXVII/Xl6N00:nYZ6Qml13bNiaLF53UW2aAwkSAolIYgR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2967:BAQBiIAKQABAgIAAQCAQAEgIBAAgkAQAQAAAGgAAgAggAAIAEAAQACSQAFwsFABAKgQAAEAAAggIIhBBEQAAAAAAAYBAAACY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000000018000000
Perceptual Hash:cc3333cc99666699
Difference Hash:0000001010100000
Wavelet Hash:000000183c340000
Color Hash:#2d3dd2

Other Hashes

Crop Resistant:0000001010100000

Scan History

Scan history not available

Unable to load historical scan data