Security Scan Report: saladintest.pages.dev

Redirected to:
https://saladintest.pages.dev/
Submitted: Apr 28, 2026, 12:05:25 AMCompleted: Apr 28, 2026, 12:06:34 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 1 country across 6 domains to perform 1 HTTP transaction. The main domain is saladintest.pages.dev and was registered NaN years ago.

Submitted URL: http://saladintest.pages.dev/

Effective URL: https://saladintest.pages.dev/Redirected

AI Security Verdict

Moderate Risk

Confidence: 82%

5
Risk Score

The site hosts a login form on a newly created, unranked subdomain with heavily obfuscated JavaScript, indicating a high‑risk credential phishing attempt.

Risk Factors
Unknown subdomain age on a free hosting platform
Credential collection on an unranked domain
High JavaScript obfuscation score
Brand name used on a domain not in Cisco Umbrella top 1M
Safety Factors
Uses reputable CDN providers (cdn.jsdelivr.net, cdn.tailwindcss.com, cdnjs.cloudflare.com, www.gstatic.com)
Established domain (2063 days old) with no strong malicious indicators — risk clamped from 8 to 5
Domain age information unavailable

Details

Page Title

Saladin Pharma - Professional Clinic Management

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

healthcare medical

(50%)

Domain Information

The domain 'saladintest.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'saladintest'. The second-level label 'pages' is 5 characters long split between two vowels and three consonants. Tokenizing the label suggests one word: pages. Median word length comes out to five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://saladintest.pages.dev/

Page Load Overview

1.09s
Total Load Time
24
HTTP Requests
6
Domains
342 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:7,006 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical50% confidence
Type: webapp
Method: ml+structural

All Detected Categories

healthcare medical
50%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4104.17.25.14United States
AS13335Cloudflare, Inc.
4142.251.20.94United States
AS15169Google LLC
4104.18.0.22United States
AS13335Cloudflare, Inc.
4104.26.2.143United States
AS13335Cloudflare, Inc.
4172.66.47.43United States
AS13335Cloudflare, Inc.
4151.101.129.229United States
AS54113Fastly, Inc.
246--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D8A41A2561F31036646390FABB477A117E28C107F64BDD94FA9C83901FCADA4C9AB7D8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:XQhv8SgyK7FhoP9Ih2BB1a0VSdtfeK9Hp4Mfm8/jwol4xvNj6A831EQrTmjRN4zH:XQhv87Fhd+QrbMFcSh6lBSpo

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:464472:iIIinEKwJQwQDkBEACXnxAQRkIK4EHYiUxSKKFtHoQIQIg5QFBAASo1SBrLABFQIrTmLsIQABBFFRXuFIskIopwED0DwRoCJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0018181818181800
Perceptual Hash:d98a2622228fafaf
Difference Hash:0d32b2b2b2b2320c
Wavelet Hash:f1f8f8f8d8d89880
Color Hash:#a387c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data