Security Scan Report: sdfrt44t.pages.dev

Submitted: Jan 22, 2026, 11:53:30 PMCompleted: Jan 22, 2026, 11:54:29 PMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 3 countries across 15 domains to perform 1 HTTP transaction. The main domain is sdfrt44t.pages.dev and was registered NaN years ago.

Submitted URL: https://sdfrt44t.pages.dev/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Impersonates Speedtest by Ookla on a new subdomain; likely phishing – do not provide any data.

Risk Factors
Brand impersonation via meta tags and page title
Use of a subdomain on a hosting platform (pages.dev) that can be created instantly
Domain age unknown / likely very new
Unranked domain (low reputation) for a major brand
Domain age information unavailable

Details

Page Title

Speedtest by Ookla - The Global Broadband Speed Test

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(57%)

Domain Information

Domain 'sdfrt44t.pages.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain 'sdfrt44t'. Its registrable label 'pages' stretches across 5 characters holding two vowels versus three consonants. Segmentation suggests 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sdfrt44t.pages.dev/

Page Load Overview

1.67s
Total Load Time
66
HTTP Requests
22
Domains
3.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,620 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software57% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
57%
documentation technical
44%
download file sharing
43%
government public service
30%
corporate
25%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1044.196.209.7France
4146.75.122.219Frankfurt am Main, Hesse, Germany
AS54113FASTLY
4141.95.98.64France
AS16276OVH SAS
4142.250.185.98United States
AS15169GOOGLE
464.233.167.84United States
AS15169GOOGLE
413.226.244.128United States
AS16509AMAZON-02
4172.66.47.78United States
AS13335CLOUDFLARENET
423.36.162.6Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
434.120.133.55Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
4104.18.87.42United States
AS13335CLOUDFLARENET
6615--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1551407F162B8536D908B979CAF36A618770FE0B7F99649D5B79D8B644B83CE0EC03404

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:xSCE53s4kl4s0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3aU:blX4bagbcVMaWUZD+3UbwnZA5M9e

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:191885:IAAiDbgFABg6R4QXiE0vURiIQVA0IoYG2xIAzBGGHRAkRMgzUxk6AgKoSSG10ANKKIsuIIXCTAQAhBpwCwggVI4ADBAJbKKS

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:6fbdfdfdfdfd1101
Perceptual Hash:aad523f30af522d1
Difference Hash:9935353131352161
Wavelet Hash:6f1f1b1b3f1f0101
Color Hash:#bf4057

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data