Security Scan Report: goo.su

Redirected to: https://rasleponsel.cc/payouts/

Submitted: Oct 15, 2025, 8:16:18 PMCompleted: Oct 15, 2025, 8:19:37 PMpubliccompleted
Loading additional data...

Summary

This website contacted 336 IPs in 9 countries across 139 domains to perform 636 HTTP transactions. The main domain is rasleponsel.cc and was registered NaN years ago.

Submitted URL: https://goo.su/UNl6LSa?/sRd/

Effective URL: https://rasleponsel.cc/payouts/Redirected

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Site is a high‑risk crypto‑mining scam with malicious IPs and suspicious redirects.

Risk Factors
Malicious Indicators of Compromise detected
Excessive redirects (5) and domain change
Recent domain registration (< 1 year)
Unranked domain with low reputation
Content promising unrealistic cryptocurrency earnings
Domain age information unavailable

Details

Page Title

Bitcoin Mining

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

cryptocurrency

(60%)

Domain Information

You're looking at domain 'goo.su' on the .su country-code top-level domain while skipping any subdomain. Count 3 characters in 'goo' split between two vowels and one consonant. Splitting it apart reveals 1 word: goo. 'goo' most strongly signals Indonesian. Secondary signals appear in Malay and Czech.

Screenshot

Security scan screenshot of https://goo.su/UNl6LSa?/sRd/

Page Load Overview

10.92s
Total Load Time
636
HTTP Requests
139
Domains
1.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
Text Length:3,590 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency60% confidence
Type: static
Method: structural

All Detected Categories

cryptocurrency
60%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
30137.0.127.204Moscow, Moscow, Russia
AS61400Start2 LLC
50193.3.184.27Russia
AS50214QWARTA LLC
2662.60.187.61Kemerovo, Kemerovo Oblast, Russia
AS207713Global Internet Solutions LLC
17194.55.244.188Moscow, Moscow, Russia
AS34959Kviktel LLC
12193.3.184.133Russia
AS50214QWARTA LLC
10185.15.175.146Russia
AS43226Data Storage Center JSC
937.9.64.225Russia
AS13238YANDEX LLC
977.88.21.119Russia
AS13238YANDEX LLC
8185.65.149.228Russia
AS51115HLL LLC
789.108.120.68Russia
AS197695Domain names registrar REG.RU, Ltd
636336--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17143E775A2B0027EA49F8FF9FC74AB65609A925FD1538199B3BCC3A41FC7CA4BE10450

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:ANDunuTMS+BWrXBPRWETk+mK9YhWthY2XE9PQCaj6iej6cj6njnj6eoJj6Bj603O:IunzURJ5gp9oPLWICFuZ77rE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:57709:006AIaACFiHBAUJEVAAkGKxJAwHppAsQEFlOWZAiIAoDZJJBEBKUd8AglGehUzIAEghNWApYIKeZBMNgBS1SwgKEiChhGCBU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00183c3c3c3c0000
Perceptual Hash:999b26673163cccc
Difference Hash:cc30323232307114
Wavelet Hash:003dbcbcfcfc3c00
Color Hash:#3a5b78

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data