Security Scan Report: q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev

Redirected to:
https://q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev/
Site favicon
Submitted: Jul 29, 2026, 9:50:48 AMCompleted: Jul 29, 2026, 9:52:55 AMpubliccompleted

Summary

This website contacted 2 IPs in 1 country across 2 domains to perform 2 HTTP transactions. The main domain is q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev and was registered 6 years ago.

Submitted URL: http://q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev/

Effective URL: https://q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev/Redirected

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

The site is flagged by Cloudflare as a phishing page and lacks reputation, indicating a high‑risk phishing threat.

Risk Factors
Strong Cloudflare phishing indicator
Unranked / low‑reputation domain
Unknown subdomain age on a hosting platform
Absence of legitimate content or functionality
Domain age information unavailable

Details

Page Title

Suspected Phishing | Cloudflare

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

phishing scam

(90%)

Domain Information

The domain 'q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev' uses the developer-focused generic top-level domain (.dev) and includes subdomain 'q9r-zpd6ru-7zxe-9vk2j4-ap3w9'. The second-level label 'pages' is 5 characters long split between two vowels and 3 consonants. Splitting it apart reveals one word: pages. Median word length is five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://q9r-zpd6ru-7zxe-9vk2j4-ap3w9.pages.dev/

Page Load Overview

1.04s
Total Load Time
7
HTTP Requests
2
Domains
0 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:373 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing scam90% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

phishing scam
90%
technology software
35%
documentation technical
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4104.18.94.41Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3172.66.47.125Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
72--

Page Statistics

7
Requests
2
Unique Domains
35.2 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C9814267BAFD103E21A3917266BDB70935A1C007CAA6499036BCC2750F4AF92AD132C5

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:libDa/D+DMFBzLeiO/tjA2uxnRC3vaQxvb0:liPa/SoFnOV3uxnM3Cej0

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4167:QIAAkrmwDCAAAEUAABAiAgA0gIAUUYQAQQcIACAIDcAAIBAQARAACAiFEAgkAQACIBBOAwIAAIAQASQBZRFgAACKAAAARQAk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff8787ffc7ffffff
Perceptual Hash:b83898c3c3c7ce3c
Difference Hash:203c38040c000000
Wavelet Hash:9c8490c0c0fcf0f0
Color Hash:#48bf40

Other Hashes

Crop Resistant:203c38040c000000

Scan History

Scan history not available

Unable to load historical scan data