Security Scan Report: signal-org.pages.dev

Site favicon
Submitted: Aug 3, 2026, 9:47:06 PMCompleted: Aug 3, 2026, 9:48:13 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 72%

3
Risk Score

The site mimics Signal’s branding on an unranked hosting subdomain without collecting credentials, yielding a moderate risk of brand impersonation.

Risk Factors
Brand mismatch (impersonation of Signal)
Unranked / low‑reputation domain
Unknown subdomain creation date
Safety Factors
No forms collecting credentials or payments
No malicious JavaScript or network activity detected
No IDS or threat‑intel alerts
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 5 to 3
Domain age information unavailable

Details

Page Title

Signal >> Головна

Scan Type

public

Domain Name Analysis

Domain 'signal-org.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain 'signal-org'. The registrable portion 'pages' spans 5 characters split between two vowels and three consonants. Breaking it apart gives one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://signal-org.pages.dev/uk/

Page Load Overview

0.87s
Total Load Time
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇦Ukrainian
Code: uk
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

HTML Lang Attribute:uk
Text Length:3,411 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: static
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
23188.114.97.3Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
231--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15EB262B35854246F4323A1CFF815721CE6D3766EE6E63D117AB84BA712D1F200A36A27

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:WH+BwVrNhAAuHEzFnWHF/W+M9EJ/W+Mlqq:WeOr3ADEz5y/R/YT

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:24469:wREoEUgaRFAciKAT0VhEIsEJmgAgCzgGOZ2AECsWM1cAKMTQEkEgAMClBFBAMloUKqqmOQPAG4IzUSqQBIiovDBIJYKz0GiA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff018183e3c3efff
Perceptual Hash:e54d9ab29c932ccc
Difference Hash:52a32746864e490e
Wavelet Hash:ff0101016141efff
Color Hash:#86742d

Scan History

Scan history not available

Unable to load historical scan data