Security Scan Report: rexq.pages.dev

Submitted: Dec 21, 2025, 8:11:26 PMCompleted: Dec 21, 2025, 8:14:51 PMpubliccompleted
Loading additional data...

Summary

This website contacted 18 IPs in 3 countries across 14 domains to perform 44 HTTP transactions. The main domain is rexq.pages.dev and was registered NaN years ago.

Submitted URL: https://rexq.pages.dev/de

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Impersonates Ookla Speedtest on an unrelated domain; high‑risk phishing.

Risk Factors
Brand impersonation (Ookla Speedtest) on unrelated domain
Unranked domain presenting a well‑known brand name
Misleading page title without legitimate affiliation
Domain age information unavailable

Details

Page Title

429 Too Many Requests

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

technology software

(77%)

Domain Information

The domain name 'rexq.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'rexq'. Its registrable label 'pages' stretches across 5 characters containing two vowels alongside 3 consonants. Tokenizing the label suggests one word: pages. Median word length comes out to 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://rexq.pages.dev/de

Page Load Overview

203.93s
Total Load Time
44
HTTP Requests
14
Domains
2.1 MB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:1,193 chars
Detector Agreement:50%

Website Classification

Primary Category

technology software77% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
77%
government public service
50%
documentation technical
31%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
103.208.81.115Ashburn, Virginia, United States
AS14618AMAZON-AES
2104.18.86.42United States
AS13335CLOUDFLARENET
2172.64.155.119United States
AS13335CLOUDFLARENET
252.202.155.16Ashburn, Virginia, United States
AS14618AMAZON-AES
223.36.162.6Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2178.250.1.12France
AS44788Criteo Technology SAS
223.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
244.193.128.80Ashburn, Virginia, United States
AS14618AMAZON-AES
2162.19.138.119Frankfurt am Main, Hesse, Germany
AS16276OVH SAS
2142.250.184.194United States
AS15169GOOGLE
4418--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BBF0909F9F16303F2E238572F8835168CF740966EB9C25E28749215F72CA041C8B5FAC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12:kxYy1bx0AqNvlIgIHTF83TF83TF83TF83TF83TFf:kl1mAW8TuTuTuTuTuTF

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:554:AAAAAAAAEAgAAAAAAAgAIAAAAAABAAAAAAAAQAAAAAAAAAIAAAAAAAAAAAAACAAAAIAAAABBAAAAAAAAACAQAAAAAAAQAEAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c3e7ffffffffffff
Perceptual Hash:e464646464747d7d
Difference Hash:9608000000000000
Wavelet Hash:c300ffff00000000
Color Hash:#ac537a

Other Hashes

Crop Resistant:9608000000000000

Scan History

Scan history not available

Unable to load historical scan data