Security Scan Report: global-payments.ru

Site favicon
Submitted: Oct 3, 2026, 11:12:28 PMCompleted: Oct 3, 2026, 11:13:43 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 72%

2
Risk Score

Established 977-day-old self-branded Russian payment-intermediary site with no forms, no credential capture and no threat-intel, YARA or IDS hits; only an unusual 10-hop redirect chain. Low risk.

Risk Factors (2)
Excessive redirect chain: 10 cross-domain redirects before the final page loaded
Business model is a gray-area intermediary that asks users to hand over account access or card details to a third party (stated in its own FAQ copy), which is a user-side risk even absent on-page forms
Safety Factors (5)
Domain age 977 days — established registration, not a freshly spun-up scam domain
No credential, login or payment form anywhere in the captured DOM
No Indicators of Compromise, no YARA malware, no IDS alerts, no Safe Browsing hit
All third-party script hosts are top-1M ranked, commonly used services (Jivo, Calltouch, Yandex Metrica, jsDelivr, Google Fonts)
Site displays its own brand consistent with its own domain (self-branding, not typosquatting)
Domain age information unavailable

Details

Page Title

Оплата зарубежных сервисов из России в условиях санкций - GlobalPayments

Scan Type

public

Domain Name Analysis

Within the Russian country-code top-level domain (.ru), 'global-payments.ru' is registered and has no subdomain. The registrable portion 'global-payments' spans 15 characters with 4 vowels and ten consonants, along with one hyphen. Splitting it apart reveals two words: global, payments. Average segment length settles at seven characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://global-payments.ru

Page Load Overview

19.28s
Total Load Time
4.2 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:12,356 chars
Detector Agreement:80%

Website Classification

Primary Category

corporate70% confidence
Type: spa
Method: structural

All Detected Categories

corporate
70%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1445.130.41.35St Petersburg, St.-Petersburg, Russia
AS198610Beget LLC
5151.101.1.229Fastly · CDNUnited States
AS54113Fastly, Inc.
5104.18.0.22Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
55.101.71.73Yerevan, Yerevan, Armenia
AS201589edgeam LLC
5142.251.14.95Google · CDNUnited States
AS15169Google LLC
5142.251.110.97Google · CDNUnited States
AS15169Google LLC
587.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
590.156.233.120Russia
AS47764LLC VK
592.118.67.1Russia
AS49031LLC Telemir
5142.251.14.94Google · CDNUnited States
AS15169Google LLC
12423--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16FE48D6246EC76BE7112879DCB06253E3D9510FFB705C1CEB2ED2BE9DB928488C1AC54

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:zuUvfW/cCHQDQvk1beweqLSkQFWbwFbcurYPuraOSoc1dO/y+CPJ:1HW/cCHQ8vkVewFMFGWrbq1Y/kPJ

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:692066:Q7QCJzSUxgwBBEAWCBSACYRKKwTsgjDnYPguQzLxwhNAJgAgAEDHADBQACMgU1jig2SICIHiApNoBE5gKM4RAAhIpACIAHEI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:b9d183c999ffffff
Perceptual Hash:ed69c3cbcb133228
Difference Hash:2b373733234646cc
Wavelet Hash:8181818199f7f7e7
Color Hash:#8453ac

Other Hashes

Crop Resistant:2b373733234646cc

Scan History

Scan history not available

Unable to load historical scan data