Security Scan Report: sso-godaddy-tsxgblbudaxrpssqtclkbiif.pages.dev

Redirected to:
https://sso.secureserver.net/?realm=pass&app=ox
Site favicon
Submitted: Jun 29, 2026, 11:26:28 PMCompleted: Jun 29, 2026, 11:27:37 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 2 HTTP transactions. The main domain is sso.secureserver.net and was registered NaN years ago.

Submitted URL: http://sso-godaddy-tsxgblbudaxrpssqtclkbiif.pages.dev/

Effective URL: https://sso.secureserver.net/?realm=pass&app=oxRedirected

AI Security Verdict

Confirmed Scam

Confidence: 88%

10
Risk Score

Impersonates GoDaddy login on a pages.dev subdomain with a credential form and multiple high‑risk indicators; confirmed scam.

Risk Factors
Brand impersonation of GoDaddy on a non‑official domain
Credential login form on unknown‑age subdomain
Unranked / low‑reputation domain
High‑severity IDS alerts for script obfuscation
Critical JavaScript obfuscation score
Domain age information unavailable

Details

Primary Scan Blocked — Fallback Capture Shown

The primary scanner could not load this page (possible bot protection). The screenshot and page details shown were captured by a fallback browser that loaded the page successfully.

Page Title

Sign In

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

technology software

(41%)

Domain Information

You're looking at domain 'sso-godaddy-tsxgblbudaxrpssqtclkbiif.pages.dev' on the developer-focused generic top-level domain (.dev) with subdomain 'sso-godaddy-tsxgblbudaxrpssqtclkbiif'. The core label 'pages' covers 5 characters holding 2 vowels versus three consonants. Tokenizing the label suggests one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://sso-godaddy-tsxgblbudaxrpssqtclkbiif.pages.dev/

Page Load Overview

1.70s
Total Load Time
19
HTTP Requests
3
Domains
16 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:178 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software41% confidence
Type: static
Method: ml+structural

All Detected Categories

technology software
41%
government public service
41%
news media journalism
39%
documentation technical
36%
adult content
34%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1023.207.210.143Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
9188.114.97.3United States
AS13335Cloudflare, Inc.
192--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17F65297DB302C84CBDB36E7BFCAC1715A1289D97ECCBB7C82499445219E05FA3114ADA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:G6He6e5A9yLFnxENM6HN26BO5fvZuS09vGr+u5yLb12uV5qUcpUEAjC1:U9vZuS09vGr+uy5qUcpUEAj0

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1524836:YBEoMGqNV6miQRGAJoCAxIAzBCAAUwLaFMxiAgMAsAgdJzJAWJHgtAWYQX6KAIUog7AUTjkpEEBiFGzAW6sSRgsjCElAiZkT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f1911f834f9fffff
Perceptual Hash:ac6ce7c3e1989293
Difference Hash:872730369e38328c
Wavelet Hash:f1010703079f9fe7
Color Hash:#3a7078

Scan History

Scan history not available

Unable to load historical scan data