Security Scan Report: 1-5go.pages.dev

Site favicon
Submitted: Dec 21, 2025, 6:09:01 AMCompleted: Dec 21, 2025, 6:10:40 AMpubliccompleted
Loading additional data...

Summary

This website contacted 62 IPs in 8 countries across 54 domains to perform 149 HTTP transactions. The main domain is 1-5go.pages.dev and was registered NaN years ago.

Submitted URL: https://1-5go.pages.dev/de

AI Security Verdict

High Risk

Confidence: 90%

9
Risk Score

Site impersonates Ookla Speedtest on an unranked domain with many redirects; likely phishing.

Risk Factors
Brand impersonation of Ookla Speedtest on a non‑official domain
Unranked domain with low reputation
High number of redirects (24) suggests suspicious redirect chain
Domain age information unavailable

Details

Page Title

Speedtest von Ookla - Der umfassende Breitband-Geschwindigkeitstest

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

technology software

(58%)

Domain Information

Domain '1-5go.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain '1-5go'. The second-level label 'pages' is 5 characters long containing 2 vowels alongside 3 consonants. Word splitting yields one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://1-5go.pages.dev/de

Page Load Overview

3.35s
Total Load Time
149
HTTP Requests
54
Domains
3.4 MB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:3,615 chars
Detector Agreement:60%

Website Classification

Primary Category

technology software58% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
58%
documentation technical
32%
government public service
26%
corporate
25%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
27141.95.33.120Germany
AS16276OVH SAS
2172.66.166.119United States
AS13335CLOUDFLARENET
2142.251.141.106United States
AS15169GOOGLE
252.72.119.204Ashburn, Virginia, United States
AS14618AMAZON-AES
2172.66.47.85United States
AS13335CLOUDFLARENET
252.45.51.250Ashburn, Virginia, United States
AS14618AMAZON-AES
254.81.7.177Ashburn, Virginia, United States
AS14618AMAZON-AES
2197.159.139.177Accra, Greater Accra Region, Ghana
AS37012Comsys (GH)
2142.250.185.234United States
AS15169GOOGLE
2162.19.138.120Frankfurt am Main, Hesse, Germany
AS16276OVH SAS
14962--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T193F308F522BC535D908B875DEF36B608630FE0B7B5A689D5BB5D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:t/1PhU54yvgs0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok39V:jwbgbagbcVMaWUZD+3UbwnZjKsOZ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168753:AACCoIxgCDcgAgANx5AeUFCkijRAHYGCwJioBAaFRwWgwQrUTYIoMREhJQD0FYPIIkjFD0QjpgQBDEUcwBAuYkQAMo4AbYCi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:9971616111010101
Wavelet Hash:fff93939033b0100
Color Hash:#2d53d2

Other Hashes

Crop Resistant:9971616111010101

Scan History

Scan history not available

Unable to load historical scan data