Security Scan Report: kuban.forum24.ru

Redirected to: https://sync.richaudience.com/f7872c90c5d3791e2b51f7edce1a0a5d/?p=4AoWPWXbVu&consentString=&r=https%3A%2F%2Fads.betweendigital.com%2Fmatch%3Fbidder_id%3D358%26external_user_id%3D%5BPDID%5D

Submitted: Dec 26, 2025, 5:03:21 AMCompleted: Dec 26, 2025, 5:05:26 AMpubliccompleted
Loading additional data...

Summary

This website contacted 11 IPs in 4 countries across 16 domains to perform 121 HTTP transactions. The main domain is sync.richaudience.com and was registered NaN years ago.

Submitted URL: https://kuban.forum24.ru

Effective URL: https://sync.richaudience.com/f7872c90c5d3791e2b51f7edce1a0a5d/?p=4AoWPWXbVu&consentString=&r=https%3A%2F%2Fads.betweendigital.com%2Fmatch%3Fbidder_id%3D358%26external_user_id%3D%5BPDID%5DRedirected

AI Security Verdict

High Risk

Confidence: 90%

7
Risk Score

Domain points to a known malicious IP and redirects to ad tracking; treat as high‑risk.

Risk Factors
Association with a known malicious IP address
UNRANKED status in Cisco Umbrella for a domain that redirects to ad tracking services
Use of a parking‑site IP suggests potential abuse or malicious intent
Domain age information unavailable

Details

Page Title

Форум Кубани,форум краснодара

Scan Type

public

Domain Information

The domain name 'kuban.forum24.ru' uses the Russian country-code top-level domain (.ru); it also runs on subdomain 'kuban'. The second-level label 'forum24' is 7 characters long containing two vowels alongside 3 consonants; bonus characters include two digits. Breaking it apart gives two words: forum, 24. Expect 3.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://kuban.forum24.ru

Page Load Overview

123.30s
Total Load Time
815
HTTP Requests
121
Domains
761 KB
Total Size

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7595.181.182.182Perm, Perm Krai, Russia
AS210756EdgeCenter LLC
74142.251.141.68United States
AS15169GOOGLE
7491.194.2.65Russia
AS51520RealHost Ltd.
745.101.37.37Yerevan, Yerevan, Armenia
AS201589edgeam LLC
74213.180.193.90Russia
AS13238YANDEX LLC
74172.217.18.3Finland
7488.212.201.198Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
7477.88.44.55Russia
AS13238YANDEX LLC
7477.88.21.119Russia
AS13238YANDEX LLC
7437.9.64.225Russia
AS13238YANDEX LLC
81511--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D333B6109685806EC547854FE000BF88E1B370BFEBBF0E1EBA4C999B57E75AE861475C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:qp6v4z5y2H1OxQRaOHz2Rx83dCBYNuuptorse+UOhJdCRgmBmrsCb8zI:PSUQRHz2Rx8cmNuuptogebE7C6FgCbn

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:52085:qIK8IIh0V40FQsA0ZCEgExQYhSATpW4CNwVQMHyptGMVSJoAMeSEADBVSBFkXFAMgUAEgjCAkFBEfBgAqIYYCxaAKQhCQDZo

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:N/A
Perceptual Hash:N/A
Difference Hash:N/A
Wavelet Hash:N/A
Color Hash:N/A

Other Hashes

Crop Resistant:N/A

Scan History

Scan history not available

Unable to load historical scan data