Security Scan Report: mahdirmfreeway.pages.dev

Site favicon
Submitted: Dec 30, 2025, 10:22:23 AMCompleted: Dec 30, 2025, 10:23:41 AMpubliccompleted
Loading additional data...

Summary

This website contacted 21 IPs in 4 countries across 15 domains to perform 69 HTTP transactions. The main domain is mahdirmfreeway.pages.dev and was registered NaN years ago.

Submitted URL: https://mahdirmfreeway.pages.dev/pl

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High risk site impersonating Speedtest on a malicious pages.dev domain.

Risk Factors
Primary domain pages.dev flagged as malicious Indicators of Compromise
Brand impersonation of Ookla Speedtest on an untrusted domain
Unranked domain presenting a well‑known service
Domain age information unavailable

Details

Page Title

Speedtest od Ookla - globalny test prędkości łącza szerokopasmowego

Scan Type

public

Language

🇵🇱

Polish

(80% confidence)

Category

technology software

(53%)

Domain Information

You're looking at domain 'mahdirmfreeway.pages.dev' on the developer-focused generic top-level domain (.dev) with subdomain 'mahdirmfreeway'. The core label 'pages' covers 5 characters containing two vowels alongside three consonants. It segments into one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mahdirmfreeway.pages.dev/pl

Page Load Overview

7.52s
Total Load Time
51
HTTP Requests
17
Domains
2.6 MB
Total Size

Language Analysis

Primary Language

🇵🇱Polish
Code: pl
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:pl
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:pl
Text Length:2,399 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software53% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
53%
government public service
29%
documentation technical
29%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11108.177.15.84Netherlands
2188.114.97.3United States
AS13335CLOUDFLARENET
2146.75.122.219Germany
2178.250.1.12United States
2141.95.98.65France
244.219.128.126Ashburn, Virginia, United States
AS14618AMAZON-AES
2142.250.185.74Unknown
223.36.162.6Unknown
2162.19.138.116Unknown
2104.18.86.42United States
AS13335CLOUDFLARENET
5121--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T177F309F522BC535D908B875DEF36B618630FE0B7B5A589D5BB4D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:GGj2+9f4yvbs0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aok3IX:7rbbbagbcVMaWUZD+3UbwnZzP

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168817:eGAMajIQN+kAMGJIHwBTQmFEAEUEpAWcYigQmmSJIkgSglDUMZipQxNEEKDGENFKuUASAZJhNNCAWEwkJG/AFUDEFF4g7oTD

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:9d71616111010101
Wavelet Hash:7f3b3b3b053d0100
Color Hash:#69931f

Other Hashes

Crop Resistant:9d71616111010101

Scan History

Scan history not available

Unable to load historical scan data