Security Scan Report: 2642476f.na-gov-pk-meeting-pac.pages.dev

Site favicon
Submitted: Sep 12, 2026, 3:34:01 PMCompleted: Sep 12, 2026, 3:34:20 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Fake National Assembly of Pakistan page on pages.dev that mimics official PAC notices but posts usernames/passwords to technologysupport.help; SideWinder malware IoC matches make this a confirmed phishing/malware lure.

Risk Factors (5)
Brand impersonation of a foreign government body on a non-official, attacker-controlled hosting subdomain
Cross-origin credential harvesting form posting passwords to technologysupport.help
SideWinder (APT malware) threat-intel matches on the primary domain and parent domain
Hidden/disguised password field obscured from the visible page
Obfuscated inline JavaScript plus untrusted hosting-platform tenant of unknown creation date
Domain age information unavailable

Details

Page Title

National Assembly of Pakistan

Scan Type

public

Domain Name Analysis

The domain '2642476f.na-gov-pk-meeting-pac.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain '2642476f.na-gov-pk-meeting-pac'. The second-level label 'pages' is 5 characters long containing 2 vowels alongside 3 consonants. Splitting it apart reveals 1 word: pages. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://2642476f.na-gov-pk-meeting-pac.pages.dev

Page Load Overview

0.84s
Total Load Time
306 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,492 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service56% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

government public service
56%
education learning
32%
news media journalism
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2104.17.24.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.66.45.29Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2172.66.46.227Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
84--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1130293112CF0006A694381D538397F5FBA96C427A74F8905317C57E99FD3E81CAB32BA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:ThnUU9i9X+CoT05O7aq7X737+4FgLvo7Xry5rmpn7KWuitSWLhLr0DlODeio+8aN:Nnx9QX9hxv4Ie7WvvDlsQ+nSzW

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8220:khAVDQAgECBiYrRCBKQWCmCJQBcVqYyKxwklhohA1QJRDQLGEGooUTdJGgCjIAAEgRoCFGkgGKAxqnIASCBA1OBuRGhALwTS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00efc3c3c3ffffff
Perceptual Hash:b42f0b0b2f292d2f
Difference Hash:4f0c060606169c0c
Wavelet Hash:00e7c3c3c3e7c707
Color Hash:#e06c94

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data