Security Scan Report: icanmining.ru

Site favicon
Submitted: Dec 26, 2025, 7:16:33 PMCompleted: Dec 26, 2025, 7:17:03 PMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 37 HTTP transactions. The main domain is icanmining.ru.

Submitted URL: https://icanmining.ru

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam; credential harvesting on brand‑impersonating, newly‑registered site.

Risk Factors
Hidden password field collecting credentials
Login form on a newly registered domain
Brand impersonation/typosquatting (BT branding)
Unranked domain with brand claim
Domain age < 7 days (critical new domain)
Domain age information unavailable

Details

Page Title

Ферма

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

technology software

(53%)

Domain Information

You're looking at domain 'icanmining.ru' on the Russian country-code top-level domain (.ru). Its registrable label 'icanmining' stretches across 10 characters holding 4 vowels versus 6 consonants. Breaking it apart gives three words: i, can, mining. Median word length comes out to 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://icanmining.ru

Page Load Overview

15.07s
Total Load Time
20
HTTP Requests
4
Domains
189 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru
Text Length:99 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software53% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
53%
news media journalism
52%
adult content
31%
documentation technical
30%
corporate business
30%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5142.250.185.138United States
AS15169GOOGLE
5104.16.174.226United States
AS13335CLOUDFLARENET
5104.17.24.14United States
AS13335CLOUDFLARENET
5185.178.208.137Russia
AS57724Ddos-guard Ltd
204--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E89154462CE0CAA6610088C9F0D2F579D8A5A02BC6A1C9D5F6FD466F3FA4FCAC427448

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:4cTqbYTV/tBj3Tu5XoUbbfRgkYtG6ka02E+O8:4cTqbYTV/tBj3Tu5XoMfertG66yO8

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4360:ACIgBAgAECASAQgAEAAADEBJAA6BVKIeEBAEGEABRLICgpAXAiLACCQAkAAJIAsIAUQAApAIAABEQAgAACgRBBAQACBAABCE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7ffffffff00
Perceptual Hash:b3333398cccc6666
Difference Hash:080c4d000c00000c
Wavelet Hash:0707071fc3c3ff00
Color Hash:#6c7fe0

Other Hashes

Crop Resistant:080c4d000c00000c

Scan History

Scan history not available

Unable to load historical scan data