Security Scan Report: drf-752.pages.dev

Redirected to: https://drf-752.pages.dev/

Site favicon
Submitted: Jan 4, 2026, 11:42:03 PMCompleted: Jan 4, 2026, 11:43:23 PMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 1 country across 9 domains to perform 103 HTTP transactions. The main domain is drf-752.pages.dev and was registered NaN years ago.

Submitted URL: http://drf-752.pages.dev/

Effective URL: https://drf-752.pages.dev/Redirected

AI Security Verdict

High Risk

Confidence: 95%

8
Risk Score

High‑risk phishing site impersonating the WTO; avoid and report.

Risk Factors
Malicious Indicators of Compromise match
Brand impersonation of a major organization (WTO)
Unranked domain with low reputation
Use of a generic hosting subdomain (pages.dev) for a brand‑specific page
Domain age information unavailable

Details

Page Title

Visa, ein zuverlässiger Partner für digitale Zahlungen | Visa

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

Within the developer-focused generic top-level domain (.dev), 'drf-752.pages.dev' is registered with subdomain 'drf-752'. The core label 'pages' covers 5 characters holding 2 vowels versus three consonants. Segmentation suggests 1 word: pages. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://drf-752.pages.dev/

Page Load Overview

3.57s
Total Load Time
66
HTTP Requests
5
Domains
2.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,856 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1134.107.253.133United States
5104.18.14.129United States
5142.251.141.78United StatesUnknown
5104.18.3.150United StatesUnknown
5104.18.66.57United StatesUnknown
5188.114.96.3United States
AS13335CLOUDFLARENET
513.33.187.116United StatesUnknown
5104.18.4.226United StatesUnknown
5216.58.212.142United StatesUnknown
5104.18.15.129United StatesUnknown
6612--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19214A672B0CA241E4223A0E591B5BB08F8F1910BC28528D4FABD47752FC5F72BD5766E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:J9sNhOw5mUvtx59VRJFAuRnl/JXF/cqfvN7VXtT1A2xP1nZfFX42LxM6hrB/h06D:IEw5mU9WxObJ3MGsFmGw2gA+7

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:205312:CCgCaIIKFxDGAxoZkk2QMTTB4E4gFkaQZQQghAYAEs0gBGg0MTAFGFCN7A0KbVNAkHBMRkZAQRBQDNQE1apjhEeyMiGTYANs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000ffffffffffff
Perceptual Hash:e8074f6a0f7819f8
Difference Hash:6163929591939793
Wavelet Hash:00006fdfffd3c303
Color Hash:#6ce083

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data