Security Scan Report: bluest0ne.ru

Redirected to: https://bluest0ne.ru/

Submitted: Dec 14, 2025, 10:30:10 AMCompleted: Dec 14, 2025, 10:31:18 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 3 domains to perform 6 HTTP transactions. The main domain is bluest0ne.ru.

Submitted URL: http://bluest0ne.ru/

Effective URL: https://bluest0ne.ru/Redirected

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Site impersonates AOL on an unranked, likely new domain – high‑risk phishing.

Risk Factors
Brand impersonation (AOL) on a non‑official domain
Unranked domain (not in Cisco Umbrella top 1M)
Possibly newly registered domain with no established reputation
Domain age information unavailable

Details

Page Title

404

Scan Type

public

Language

🇺🇸

English

(75% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'bluest0ne.ru' on the Russian country-code top-level domain (.ru) without a subdomain. The registrable portion 'bluest0ne' spans 9 characters holding 3 vowels versus five consonants, plus 1 digit. Breaking it apart gives 3 words: bluest, 0, ne. The median word length lands at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://bluest0ne.ru/

Page Load Overview

2.60s
Total Load Time
6
HTTP Requests
3
Domains
21 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:75%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:75%
Script Type:Latin
Text Length:31 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1188.114.97.3United States
AS13335CLOUDFLARENET
1188.114.96.3United States
AS13335CLOUDFLARENET
1172.217.18.3United States
AS15169GOOGLE
1142.250.186.138United States
AS15169GOOGLE
12a00:1450:4001:80f::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
12a00:1450:4001:829::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
66--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T16B41EF27534C280AF20B20503F632A6431AFEC475F9F8FB66599652CF6CD5B212917CC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:Xp3Avaq3O/I9M1+sF3E8knJl6ZbVJ795u80MlKeQGN:JKaEgNyJ6xvdf8ed

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2082:EAAAQAAAggAGAAAAAAAAABAIAACgQAAAIQACAADgAAkAAAUgAAAACEADIAAABAAASUQAIABBYAAAAAAAAEABDAAAAAAAABCg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffe7e7ffffffffff
Perceptual Hash:b333988ccccc6733
Difference Hash:304c4c1000000000
Wavelet Hash:3f2707070f0f0f0f
Color Hash:#a8ac53

Other Hashes

Crop Resistant:304c4c1000000000

Scan History

Scan history not available

Unable to load historical scan data