Security Scan Report: worker-7g5.pages.dev

Submitted: Jan 20, 2026, 10:59:12 AMCompleted: Jan 20, 2026, 11:00:12 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 5 domains to perform 1 HTTP transaction. The main domain is worker-7g5.pages.dev and was registered NaN years ago.

Submitted URL: https://worker-7g5.pages.dev/performance/united-states

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Impersonates Speedtest on an unrelated domain; treat as phishing.

Risk Factors
Brand impersonation (Speedtest) on unrelated domain
Unranked domain mimicking a well‑known brand
Mismatched final URL (worker-7g5.pages.dev) vs advertised brand
Domain age information unavailable

Details

Page Title

Find Your Next ISP with Speedtest’s Help | Speedtest

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(30%)

Domain Information

The domain 'worker-7g5.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'worker-7g5'. Its registrable label 'pages' stretches across 5 characters with 2 vowels and 3 consonants. Breaking it apart gives one word: pages. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://worker-7g5.pages.dev/performance/united-states

Page Load Overview

0.75s
Total Load Time
29
HTTP Requests
8
Domains
999 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,423 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software30% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
30%
documentation technical
25%

Detected Features

Search
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9172.66.44.179United States
AS13335CLOUDFLARENET
523.36.162.25Germany
5104.17.31.174Germany
5104.18.128.216United States
AS13335CLOUDFLARENET
5104.18.87.42United States
AS13335CLOUDFLARENET
295--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T172732AE5A34C435E916B478C7E36B518331FA0FAFE5689DAE69D8B2442839D0FC07C58

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:G7ui4k3+orUmd13HJEHxVG6oQDclzH71BoR4:GbWsAjoQDazHRBf

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:80291:vQIMHIHYQQgQcCkQoAkyAwBKmhAGYgQkWPKFLC08AdSMYTCIDVuAGyCkBCsJcGKMAZFBEIW4hHgUCIgSsYOQELAQIhgDYgYA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffffffffffffff
Perceptual Hash:f772380a4b0e4b73
Difference Hash:990e0c440e22261a
Wavelet Hash:00c2e6fee7a383a3
Color Hash:#c5b687

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data