Security Scan Report: oreltimes.ru

Site favicon
Submitted: Oct 2, 2026, 5:29:07 AMCompleted: Oct 2, 2026, 5:29:43 AMpubliccompleted

AI Security Verdict

Safe Website

Confidence: 85%

1
Risk Score

Established 12-year-old regional Russian news site (ОрёлТаймс) with self-branding, no credential/payment forms, no Indicators of Compromise, and no malware signals. Only INFO-level IDS heuristics. Safe.

Safety Factors (5)
Established 12-year-old domain with stable registration history
Content is ordinary local news reporting (court cases, weather, municipal finance, heating season)
No credential, password, or payment collection forms; only an on-site search box posting to the same origin
No cross-origin credential exfiltration and no cross-origin JS network targets
No Indicators of Compromise, YARA, Safe Browsing, or IDS phishing/malware alerts
Domain age information unavailable

Details

Page Title

Новости Орла и Орловской области — "Орелтаймс"

Scan Type

public

Domain Name Analysis

The domain 'oreltimes.ru' uses the Russian country-code top-level domain (.ru) without a subdomain. The second-level label 'oreltimes' is 9 characters long holding four vowels versus five consonants. Word splitting yields 3 words: or, el, times. Median word length comes out to 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://oreltimes.ru

Page Load Overview

2.60s
Total Load Time
3.3 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru-RU
Text Length:11,272 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content56% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

adult content
56%
government public service
55%
news media journalism
45%
healthcare medical
27%
corporate
25%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1191.215.42.130Russia
AS57724Ddos-guard Ltd
877.88.55.88Yandex · CLOUDRussia
AS13238YANDEX LLC
887.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
888.212.201.198Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
837.9.64.225Yandex · CLOUDRussia
AS13238YANDEX LLC
888.212.202.52Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
877.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
888.212.201.204Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
887.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
759--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1727395F25C8D307F4202B591F8187E0C7783427EDF664A56ABF45BADF2D2E10867621A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:F1v7+Sr5FEeZJMaMSlzY/EX2PXMMmKfuYu+ubjk00U7DPuxWxh6gXHZdOgMjAdPH:F9fEeZia7YMGUMWQGDPuwpMjAxa2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:74649:SmhiulA9CNBRykghCGCAwgAJkLpvhsghgPKa+ERrRgNoWBYnPA62IBsRakIggkgCQhQAkgklSNDQxHAJSlCkhgaQQpDFAAUh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data