Security Scan Report: freshtorrent.ru

Site favicon
Submitted: Oct 4, 2026, 8:10:04 AMCompleted: Oct 4, 2026, 8:10:43 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 65%

4
Risk Score

Established Russian software/game download portal (freshtorrent.ru) with no credential, payment, IoC or malware signals. Piracy and cracked/modded downloads pose a user-side malware risk, not a phishing risk.

Risk Factors (3)
Distribution of pirated/cracked software and modified (repackaged) applications, which carries a real risk of bundled malware for downloaders
Content includes tooling marketed as bypassing blocks ('Запрет Дискорд') and modified social-media clients
Unranked domain not present in the Cisco Umbrella top 1M despite multi-year age
Safety Factors (4)
Established 6-year-old domain
No credential or payment forms (search form only)
No Indicators of Compromise, no JavaScript YARA malware matches, no network IDS alerts
No brand impersonation of another entity and no credential exfiltration
Domain age information unavailable

Details

Page Title

Скачать бесплатно новинки софта, программы, игры - Главная страница

Scan Type

public

Domain Name Analysis

The domain 'freshtorrent.ru' uses the Russian country-code top-level domain (.ru) while skipping any subdomain. Count 12 characters in 'freshtorrent' holding 3 vowels versus 9 consonants. Word splitting yields two words: fresh, torrent. The median word length lands at six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://freshtorrent.ru

Page Load Overview

3.21s
Total Load Time
1.7 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:3,783 chars
Detector Agreement:50%

Website Classification

Primary Category

finance banking79% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
79%
entertainment media
79%
technology software
68%
healthcare medical
64%
adult content
62%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15185.86.95.62Moscow, Moscow, Russia
AS204343Compubyte Limited
1088.212.202.52Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
10142.250.154.94Google · CDNUnited States
AS15169Google LLC
10142.251.110.95Google · CDNUnited States
AS15169Google LLC
10172.67.175.48Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
10104.21.40.41Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
10188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
757--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T163F235730949C07B0253A3CED9243B2EF5A3427BEB975E1165F40A9AAEE2F02DF51146

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:F5eYtYLofINpMiFiQBUcPRtddIslscNu22TXAv8T2:LtYLofkMiFiQBUcPRtddIslscNu22TXS

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:35657:7QWDBJFoUiBC1EREEZQKZyhgxIDEqCAY5CDgJ6GhgCGrkMAHBgsBAUBiGkLIhh+AgJCAZNFSSFICJgmC0KRABKiIjCIoVUJI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data