Security Scan Report: mto-tracker.pages.dev

Site favicon
Submitted: Sep 29, 2026, 6:51:26 PMCompleted: Sep 29, 2026, 6:52:02 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 68%

7
Risk Score

Single-source (unverified) phishing report on the primary domain plus an email/password login form on an unknown-age Cloudflare Pages subdomain. No brand impersonation or exfiltration, but the phishing indicator drives it to HIGH_RISK; treat login credentials as unsafe to enter.

Risk Factors (5)
Single-source, unverified phishing threat-intel report on the primary domain (content-malware-typed indicator)
Credential-collecting login form (email + password) on an unknown-age shared-hosting platform subdomain
Unknown domain age — subdomain could have been deployed minutes ago despite the 2020 platform apex
No domain reputation (unranked in Cisco Umbrella) for a page that captures credentials
Noindex/visibility posture and no off-site scripts offer no corroborating legitimacy signals
Domain age information unavailable

Details

Page Title

SERVICE Tracker — MTO Programme

Scan Type

public

Domain Name Analysis

The domain 'mto-tracker.pages.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain 'mto-tracker'. Count 5 characters in 'pages' containing 2 vowels alongside 3 consonants. Word splitting yields 1 word: pages. Median word length is 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mto-tracker.pages.dev/

Page Load Overview

0.44s
Total Load Time
439 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:320 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking31% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4172.66.47.4Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1192.178.170.95Google · CDNUnited States
AS15169Google LLC
174.125.29.94Google · CDNUnited States
AS15169Google LLC
1172.66.44.252Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1172.217.208.95Google · CDNUnited States
AS15169Google LLC
1142.250.154.94Google · CDNUnited States
AS15169Google LLC
96--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12AE1983500411D3F620729E4F5A07B5921DEC709D92B9914F7EC43B76FDADD2892EB14

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:TFh9hraXMmMLoOR5O9tDksiJEiJxiJ7iJWiJtiJfiJVt95k72OxKzes8u/bgKVH2:5HfmyoOjO9XSESxS7SWStSfSK1tBuTpE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6797:KRPwYBQjuJCFAaAIjBQKCIiABJJSAO0ihUAcEAGyGCDYSsSACCFpAwBCCiFCCIqAkokBIVDKzFAl4sE4BnA5CxFAEQAJEBAQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018001818180000
Perceptual Hash:dcf676899933228c
Difference Hash:083214b2b2b30db1
Wavelet Hash:ffffff9918180000
Color Hash:#2d8649

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data