Security Scan Report: massgravel.dev

Redirected to:
https://massgravel.dev/
Site favicon
Submitted: Sep 15, 2026, 6:22:04 AMCompleted: Sep 15, 2026, 6:22:31 AMpubliccompleted

This website contacted 1 IP in 1 country across 1 domain to perform 19 HTTP transactions. The main domain is massgravel.dev and was registered 3 weeks ago.

Submitted URL: https://massgravel.dev/get

Effective URL:

https://massgravel.dev/
Redirected

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Typosquat of official MAS domain, 15 days old and unranked. Instructs running remote PowerShell via irm | iex, a high-risk malware/PUP vector. No forms or IoC, but brand impersonation and execution risk warrant HIGH_RISK.

Risk Factors (5)
Domain registered only 15 days ago (VERY_NEW, 2x risk multiplier).
Domain is unranked in Cisco Umbrella top 1M.
Domain is a likely typosquat of the official MAS domain massgrave.dev.
Instructs users to run a remote PowerShell script directly via irm | iex.
Impersonates the Microsoft Activation Scripts (MAS) project without being the official domain.
Domain age information unavailable

Details

Page Title

Microsoft Activation Scripts | MAS

Scan Type

public

Domain Name Analysis

Within the developer-focused generic top-level domain (.dev), 'massgravel.dev' is registered without a subdomain. The registrable portion 'massgravel' spans 10 characters holding 3 vowels versus 7 consonants. Segmentation suggests 2 words: mass, gravel. Expect 5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://massgravel.dev/get

Page Load Overview

7.61s
Total Load Time
736 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:3,527 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software77% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
77%
documentation technical
56%
government public service
34%

Detected Features

Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1982.153.135.80Singapore, Singapore
AS61112AKILE LTD
191--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF639E31E618603E036312EEE0647B68FC96418FCF261981B7FE57E51682C80DAB7D6D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:vg2fpKmemOQFp6+alBsRBozR8uLyL1U+ESLY45uG:J6ZQFW0Lo1FE1UfsY4cG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:70838:DGkwkhSgEAEwhkVKEYMEgioAAqiE1jwiEYGUOlUgCOUDIoQYSEkAkgEC0GYOgUCYkAAQA4wElhXQ4FRrQAGCgGTIVCIGGQp1

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffdfcfffffffff
Perceptual Hash:b83847671b381d4f
Difference Hash:9b08b6b89e1e3636
Wavelet Hash:0041cf0fcfc7c3c7
Color Hash:#93931f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data