Security Scan Report: kkmengshi.pages.dev

Site favicon
Submitted: Dec 31, 2025, 7:18:04 PMCompleted: Dec 31, 2025, 7:19:17 PMpubliccompleted
Loading additional data...

Summary

This website contacted 22 IPs in 3 countries across 15 domains to perform 70 HTTP transactions. The main domain is kkmengshi.pages.dev and was registered NaN years ago.

Submitted URL: https://kkmengshi.pages.dev/

AI Security Verdict

High Risk

Confidence: 95%

8
Risk Score

Site impersonates Ookla Speedtest on a malicious, unranked domain – high‑risk phishing.

Risk Factors
Malicious Indicators of Compromise on primary domain pages.dev
Brand impersonation of Ookla Speedtest on an unranked, suspicious domain
Unranked domain (pages.dev) not in Cisco Umbrella top 1 M
Domain age information unavailable

Details

Page Title

Speedtest by Ookla - The Global Broadband Speed Test

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(68%)

Domain Information

The domain name 'kkmengshi.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'kkmengshi'. Its registrable label 'pages' stretches across 5 characters with 2 vowels and 3 consonants. Splitting it apart reveals 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://kkmengshi.pages.dev/

Page Load Overview

18.33s
Total Load Time
56
HTTP Requests
18
Domains
2.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,635 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software68% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
68%
download file sharing
51%
documentation technical
50%
government public service
33%
corporate
25%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1434.233.186.231France
244.193.128.80Ashburn, Virginia, United States
AS14618AMAZON-AES
223.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2162.19.138.119Frankfurt am Main, Hesse, Germany
AS16276OVH SAS
213.226.244.128Unknown
254.235.246.67Ashburn, Virginia, United States
AS14618AMAZON-AES
23.217.134.118Unknown
2146.75.122.219Frankfurt am Main, Hesse, Germany
AS54113FASTLY
2142.251.208.10Unknown
2142.251.208.2United States
AS15169GOOGLE
5622--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10EF308F522BC535D908B875DEF36B608630FE0B7B5A689D5BB5D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:xSCEvWs4yv4s0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3aw:bQb4bagbcVMaWUZD+3UbwnZTc

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168436:SMqSREJYlEMJYAgkRU4AAClMpAKAAARiwQogCwIF6RBIkhMAGVmA8gDHEanAAnMlInFcEaiAJpSWJZiEECmGNoRRCIocAoEC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:9971616111010101
Wavelet Hash:6f3b3b3b01310100
Color Hash:#5b1f93

Other Hashes

Crop Resistant:9971616111010101

Scan History

Scan history not available

Unable to load historical scan data