Security Scan Report: foxflux.pages.dev

Redirected to: https://foxflux.pages.dev/login

Site favicon
Submitted: Nov 13, 2025, 12:17:47 PMCompleted: Nov 13, 2025, 12:18:23 PMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 2 countries across 4 domains to perform 13 HTTP transactions. The main domain is foxflux.pages.dev.

Submitted URL: https://foxflux.pages.dev/

Effective URL: https://foxflux.pages.dev/loginRedirected

AI Security Verdict

High Risk

Confidence: 88%

9
Risk Score

Likely phishing site harvesting credentials via hidden password field

Risk Factors
Credential harvesting form (password-only) on a newly observed domain
Hidden password field not visible to users
Domain age information unavailable

Details

Page Title

ReactFlux

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'foxflux.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'foxflux'. Count 5 characters in 'pages' split between two vowels and three consonants. Word splitting yields 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://foxflux.pages.dev/

Page Load Overview

5.62s
Total Load Time
13
HTTP Requests
4
Domains
477 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:192 chars
Detector Agreement:67%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5188.114.97.3United States
AS13335CLOUDFLARENET
1104.16.175.226United States
AS13335CLOUDFLARENET
1188.114.96.3United States
AS13335CLOUDFLARENET
1172.105.196.206Tokyo, Tokyo, Japan
AS63949Akamai Connected Cloud
1104.16.174.226United States
AS13335CLOUDFLARENET
12a06:98c1:3121::3United States
AS13335CLOUDFLARENET
12a06:98c1:3120::3United States
AS13335CLOUDFLARENET
12606:4700::6810:afe2United States
AS13335CLOUDFLARENET
12606:4700::6810:aee2United States
AS13335CLOUDFLARENET
139--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14A02C92160001A3D31320BD9FC9CEA256799A01CFE25DD98D1AE02BA4BFCDF55E3749B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:WC/ZEORuP20A9pc4R3RU5TCeTdCd+RIuuu+:WC/ZEORuO0AoN8eRwkIuuu+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8518:AFkl4ghCAG9MQQwwDsJCYBogX1golEUDqhmAaCpE2oRItgSBDAAAggg/sAImsiKRRAksBAGcEAkyQIARBEbfKJoeVRiEEegc

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f1f1f0fcf0f4f0f0
Perceptual Hash:eea96c949d939115
Difference Hash:2727212024242523
Wavelet Hash:f0f0f0f0f0f0f0f0
Color Hash:#783a66

Scan History

Scan history not available

Unable to load historical scan data