Security Scan Report: pub-3cf24fb9b2094f249e7749eb497d6449.r2.dev

Redirected to:
blob:https://pub-3cf24fb9b2094f249e7749eb497d6449.r2.dev/93851542-1849...
Submitted: Jul 4, 2026, 5:52:09 PMCompleted: Jul 4, 2026, 5:53:17 PMpubliccompleted

Summary

This website contacted 8 IPs in 1 country across 9 domains to perform 3 HTTP transactions. The main domain is and was registered 4 years ago.

Submitted URL: https://pub-3cf24fb9b2094f249e7749eb497d6449.r2.dev/japan.html

Effective URL: blob:https://pub-3cf24fb9b2094f249e7749eb497d6449.r2.dev/93851542-1849-4fa5-8b72-eaa675315e96Redirected

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

The site hosts a credential‑collecting login form on an unranked domain and is flagged as a phishing page – treat as high‑risk credential phishing.

Risk Factors
Unranked domain lacking reputation
Cross‑origin network request to an external domain
Generic login page without legitimate brand context
Domain age information unavailable

Details

Page Title

ログイン

Scan Type

public

Language

🇯🇵

Japanese

(60% confidence)

Category

phishing scam

(41%)

Domain Information

The domain 'pub-3cf24fb9b2094f249e7749eb497d6449.r2.dev' uses the developer-focused generic top-level domain (.dev) and includes subdomain 'pub-3cf24fb9b2094f249e7749eb497d6449'. The registrable portion 'r2' spans 2 characters holding zero vowels versus 1 consonant; bonus characters include one digit. Word splitting yields two words: r, 2. Expect one character per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of ajax.googleapis.com

Page Load Overview

1.25s
Total Load Time
14
HTTP Requests
9
Domains
139 KB
Total Size

Language Analysis

Primary Language

🇯🇵Japanese
Code: ja
Confidence:60%
Script:Mixed
Direction:ltr

Detection Details

Language Code:ja
Detection Confidence:60%
Script Type:Mixed
HTML Lang Attribute:en
Text Length:124 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as ja

Website Classification

Primary Category

phishing scam41% confidence
Type: webapp
Method: ml+structural

All Detected Categories

phishing scam
41%
adult content
36%
government public service
28%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7104.18.10.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1192.178.183.95Google · CDNUnited States
AS15169Google LLC
1151.101.193.155Fastly · CDNUnited States
AS54113Fastly, Inc.
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.18.54.45Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.251.20.95Google · CDNUnited States
AS15169Google LLC
1104.18.11.207Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1104.18.40.68Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
148--

Page Statistics

14
Requests
9
Unique Domains
194.5 KB
Total Size

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17232B40D77A1C5262C2374B9667BB61929D4941BCAE4CC8C7CAEEEB00F4065690F369F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:jz2fA3lwBtitv2GyD/QRaQQRhw+EqgztA81ED2fIlphD8r3ip8pUX/6UmZmxZ4vm:26Rfqw+MzOUx5mx7

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:11857:WHQCUYMaBOyIwNAGER1GBUKwIGSgEigfoAIwSAACc5JhORkAIq1hhgfaJDIasQBAQUAaAwCKi5noRPYGNwzUFcFhSaoKiCiH

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e7e7e7ffffffff
Perceptual Hash:b333cccc3333cc8c
Difference Hash:0c0c0c4d00080000
Wavelet Hash:24240404273f3f3f
Color Hash:#af87c5

Other Hashes

Crop Resistant:0c0c0c4d00080000

Scan History

Scan history not available

Unable to load historical scan data