Security Scan Report: 003-exu.pages.dev

Submitted: Jan 4, 2026, 7:50:04 AMCompleted: Jan 4, 2026, 7:54:32 AMpubliccompleted
Loading additional data...

Summary

This website contacted 20 IPs in 4 countries across 6 domains to perform 15 HTTP transactions. The main domain is 003-exu.pages.dev and was registered NaN years ago.

Submitted URL: https://003-exu.pages.dev/it

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing site impersonating Speedtest; avoid and report.

Risk Factors
Primary domain pages.dev matches known malicious Indicators of Compromise
Brand impersonation of Ookla Speedtest on an untrusted domain
Unranked domain presenting a well‑known service
Domain age information unavailable

Details

Page Title

Speedtest di Ookla - Il test globale per la velocità della tua banda larga

Scan Type

public

Language

🇮🇹

Italian

(80% confidence)

Category

technology software

(56%)

Domain Information

The domain '003-exu.pages.dev' uses the developer-focused generic top-level domain (.dev), featuring subdomain '003-exu'. Its registrable label 'pages' stretches across 5 characters containing 2 vowels alongside 3 consonants. Segmentation suggests one word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://003-exu.pages.dev/it

Page Load Overview

0.23s
Total Load Time
15
HTTP Requests
6
Domains
74 KB
Total Size

Language Analysis

Primary Language

🇮🇹Italian
Code: it
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:it
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:it
Text Length:3,772 chars
Detector Agreement:60%

Website Classification

Primary Category

technology software56% confidence
Type: spa
Method: ml+structural

All Detected Categories

technology software
56%
documentation technical
32%
corporate
25%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1535.172.60.55United States
1188.114.96.3United States
AS13335CLOUDFLARENET
057.129.85.132Germany
0142.250.110.84Sweden
023.36.162.25France
0104.18.87.42United States
AS13335CLOUDFLARENET
0141.95.33.120Unknown
0142.250.185.162Unknown
0142.251.141.106Unknown
018.245.31.9Unknown
1520--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1311408F162B8536D908B879DEF36A618770FE0A7F99649D5B79D8B644B83CE0EC03404

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:PBPjqTaWDl4yv+s0xE6J/CgbcVKzoKeMXKLnpI6dDcPXE+ymj6aslNzlbsjq0AoH:9Eb+bagbcVMaWUZD+3UbwnZ7qhh9q

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:195625:qKJARowJkaKBIhjSEVKReFxkECMJsIhADU8CKAwBJAwWKDAQB4jMPCAEGDdAZRYaGKIoiA5DATHAkagYEUFFAGQw9CKwAjG+

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:6fb9ddfdfdfd0101
Perceptual Hash:aad533f30ad132d1
Difference Hash:9935353131352131
Wavelet Hash:6f593b3b3b1b0101
Color Hash:#93781f

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data