Security Scan Report: urbanbuild.ru

Redirected to: blob:https://urbanbuild.ru/8d6a20c4-3a22-4e9c-a6e5-3f7fb564ad2e

Submitted: Nov 1, 2025, 5:32:56 PMCompleted: Nov 1, 2025, 5:33:44 PMpubliccompleted
Loading additional data...

Summary

This website contacted 14 IPs in 3 countries across 3 domains to perform 7 HTTP transactions. The main domain is .

Submitted URL: https://urbanbuild.ru/wp-includes/customize/class-wp-customize-partial.html

Effective URL: blob:https://urbanbuild.ru/8d6a20c4-3a22-4e9c-a6e5-3f7fb564ad2eRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

High‑confidence phishing site impersonating Capital One; avoid and report.

Risk Factors
Compromised WordPress URLs indicate a hacked site used for phishing
Impersonation of a well‑known financial brand on a domain not in Cisco Umbrella top 1 M
Disguised password fields can trick users into entering credentials
Unicode mixing creates visual confusion to hide malicious intent
Multiple sequential verification forms aim to harvest credentials and personal data
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(61%)

Domain Information

Domain 'urbanbuild.ru' uses the Russian country-code top-level domain (.ru). The core label 'urbanbuild' covers 10 characters split between four vowels and six consonants. Segmentation suggests 2 words: urban, build. The median word length lands at 5 characters. 'urban' most often appears in English. You will also see it in Chinese (Pinyin) and Indonesian contexts.

Screenshot

Security scan screenshot of https://urbanbuild.ru/wp-includes/customize/class-wp-customize-partial.html

Page Load Overview

7.39s
Total Load Time
7
HTTP Requests
3
Domains
30 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,433 chars
Detector Agreement:67%

Website Classification

Primary Category

finance banking61% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
61%
adult content
47%
social media network
44%
government public service
41%
documentation technical
37%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
735.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
037.140.192.227Russia
AS197695Domain names registrar REG.RU, Ltd
0151.101.66.137San Francisco, California, United States
AS54113FASTLY
0151.101.194.137San Francisco, California, United States
AS54113FASTLY
0151.101.2.137San Francisco, California, United States
AS54113FASTLY
02a00:f940:2:2:1:1:0:70Russia
AS197695Domain names registrar REG.RU, Ltd
02a04:4e42:600::649United States
AS54113FASTLY
02a05:d014:58f:6200::258Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a05:d014:58f:6200::259Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
714--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F443543661A341BADDB3CAC847EB2A463E849887E0C9D12477AC9AD44F838D5D47D3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:e7FSF3FuWFzF+fs8utovi8utovWX9ssTH/XCt1WtcL/plyA7qvE6mw:0Ql0WxMTv9vHefCt1WtcLRlyA7q86mw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:57272:hjoMBpRUsAEIAQoJnhRZEABPITChDmEKOQjqO0YIIEiA6xcIBJoCEhsFBQEhIdczkDCEgxkLGgQ1UAwsmUAjoAKQWAwrsiQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fa5bde7c3ffcfff
Perceptual Hash:b38f8c27239d89b1
Difference Hash:e869704c4d2a2c00
Wavelet Hash:7f343c2c0424df0d
Color Hash:#78743a

Other Hashes

Crop Resistant:e869704c4d2a2c00

Scan History

Scan history not available

Unable to load historical scan data