Security Scan Report: k2wdi.pages.dev

Site favicon
Submitted: Nov 25, 2025, 9:05:16 AMCompleted: Nov 25, 2025, 9:08:27 AMpubliccompleted
Loading additional data...

Summary

This website contacted 159 IPs in 6 countries across 53 domains to perform 157 HTTP transactions. The main domain is k2wdi.pages.dev and was registered NaN years ago.

Submitted URL: https://k2wdi.pages.dev/it

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Site impersonates Ookla Speedtest on an unranked domain; high‑risk phishing.

Risk Factors
Brand impersonation (Ookla Speedtest) on a non‑official, unranked domain
Misleading page title and content suggesting a legitimate speed‑test service
Potential user confusion due to domain resembling a generic hosting subdomain
Domain age information unavailable

Details

Page Title

Speedtest di Ookla - Il test globale per la velocità della tua banda larga

Scan Type

public

Language

🇮🇹

Italian

(80% confidence)

Category

technology software

(53%)

Domain Information

The domain 'k2wdi.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'k2wdi'. Count 5 characters in 'pages' containing two vowels alongside three consonants. Breaking it apart gives one word: pages. Expect five characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://k2wdi.pages.dev/it

Page Load Overview

2.31s
Total Load Time
157
HTTP Requests
53
Domains
3.5 MB
Total Size

Language Analysis

Primary Language

🇮🇹Italian
Code: it
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:it
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:it
Text Length:2,423 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software53% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
53%
government public service
26%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15734.240.33.144Dublin, Leinster, Ireland
AS16509AMAZON-02
26146.75.122.219Frankfurt am Main, Hesse, Germany
AS54113FASTLY
123.70.14.155Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
1234.249.205.31Dublin, Leinster, Ireland
AS16509AMAZON-02
10188.114.97.3United States
AS13335CLOUDFLARENET
7146.75.122.132Frankfurt am Main, Hesse, Germany
AS54113FASTLY
62.16.110.42Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
6104.18.86.42United States
AS13335CLOUDFLARENET
544.209.250.203Ashburn, Virginia, United States
AS14618AMAZON-AES
4216.58.206.66United States
AS15169GOOGLE
157159--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D1F308F522B8535D908B875DEF36B608630FE0B7F5A689D5BB5D8F644B839E4E803840

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:rBPjqTaLG4u4yms0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0Aoo:RluibagbcVMaWUZD+3UbwnZHI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:168515:Ej8gWYmGoAUphAQQCWAgAQJUOIIKAEGLDBbERGwk6gGqwlAAgBIKZmoFlHwCTNZospQPpNLAgARiIIIQCcEDcggNIBKAaEIE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffffffff0100
Perceptual Hash:aad522f132c7ca55
Difference Hash:9971616111010101
Wavelet Hash:7f7b3b3b033b0100
Color Hash:#bac587

Other Hashes

Crop Resistant:9971616111010101

Scan History

Scan history not available

Unable to load historical scan data