Security Scan Report: heru.pages.dev

Site favicon
Submitted: Dec 30, 2025, 4:29:06 PMCompleted: Dec 30, 2025, 4:30:25 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 1 country across 6 domains to perform 23 HTTP transactions. The main domain is heru.pages.dev and was registered NaN years ago.

Submitted URL: https://heru.pages.dev/global-index/serbia

AI Security Verdict

High Risk

Confidence: 95%

7
Risk Score

Site flagged HIGH_RISK due to malicious primary domain pages.dev.

Risk Factors
Primary domain malicious Indicators of Compromise match
Unranked/low‑reputation domain
Domain age information unavailable

Details

Page Title

Serbia's Mobile and Broadband Internet Speeds - Speedtest Global Index

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Within the developer-focused generic top-level domain (.dev), 'heru.pages.dev' is registered and includes subdomain 'heru'. Count 5 characters in 'pages' containing two vowels alongside 3 consonants. It segments into 1 word: pages. The median word length lands at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://heru.pages.dev/global-index/serbia

Page Load Overview

2.94s
Total Load Time
33
HTTP Requests
9
Domains
1.8 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:4,112 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9104.16.6.65United States
AS13335CLOUDFLARENET
4188.114.97.3United States
AS13335CLOUDFLARENET
4104.18.86.42United States
AS13335CLOUDFLARENET
4146.75.122.219Unknown
4188.114.96.3United States
AS13335CLOUDFLARENET
413.32.121.112UnknownUnknown
42.20.245.7UnknownUnknown
337--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19AF3E760E570032ED04A83CDF3727B8A110AB1C7994547F0B29D49715B83EEEBE5F56A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:Wg4y7jjFBEySQDuVDyPmdUIp9L1RbmRBARzHp9f1RbgRBxRzWp9y1RbIRBtRz5pk:Vf1GQDI+0Umz6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:165456:KsGwmo8CWhgIRJEMBEAYB2AMBU9AKiAkCAVcUYQjgHkoKIWMAIyIzAQplMn6BGbcESCKQhRAgl3PYSUdAbEQMoAgEQqJcA5E

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000ffffffffffff
Perceptual Hash:ac42022a53fdf5b9
Difference Hash:c5c500163337330a
Wavelet Hash:0000dfd3c3c3c3ff
Color Hash:#7de06c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data