Security Scan Report: proxy-d9n.pages.dev

Submitted: Feb 17, 2026, 12:32:49 PMCompleted: Feb 17, 2026, 12:34:51 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is proxy-d9n.pages.dev and was registered NaN years ago.

Submitted URL: https://proxy-d9n.pages.dev/pt

AI Security Verdict

Confirmed Scam

Confidence: 82%

9
Risk Score

Site impersonates Speedtest on an unknown subdomain; likely phishing – do not trust.

Risk Factors
Brand impersonation via meta tags on a non‑official domain
Subdomain on hosting platform with unknown age (very new)
Unranked domain (low reputation) claiming a known brand
Domain age information unavailable

Details

Page Title

proxy-d9n.pages.dev

Scan Type

public

Language

🇵🇹

Portuguese

(80% confidence)

Category

technology software

(80%)

Domain Information

Domain 'proxy-d9n.pages.dev' uses the developer-focused generic top-level domain (.dev); it also runs on subdomain 'proxy-d9n'. The core label 'pages' covers 5 characters with two vowels and three consonants. Splitting it apart reveals one word: pages. Expect five characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://proxy-d9n.pages.dev/pt

Page Load Overview

21.58s
Total Load Time
48
HTTP Requests
18
Domains
2.5 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:pt
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:pt
Text Length:1,518 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software80% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
80%
documentation technical
59%
government public service
39%
corporate business
27%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
48172.66.44.183United States
AS13335Cloudflare, Inc.
481--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19C048F77329A063986558498F05B43099F20B143F506C9BCB9BCBAD9BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:sfQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIszu2bMy8Olds:PhoC9JSqzzbs6o3Sj3gcrs62eAK

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:184492:1URTRKvZhAQbKCIKIAxS6jOggQYBpRAMSgBAE4pKVlomkiInEFkySYnCAlogiAIiAEuImZDVJrqJpowSsghIFBBAEEg8ptBn

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfc3c7ffffffff
Perceptual Hash:b3318ccccc673333
Difference Hash:00180c1400000000
Wavelet Hash:3f1f030f00000000
Color Hash:#ca2dd2

Other Hashes

Crop Resistant:00180c1400000000

Scan History

Scan history not available

Unable to load historical scan data