Security Scan Report: santehkeram.ru

Site favicon
Submitted: Sep 24, 2026, 1:00:18 AMCompleted: Sep 24, 2026, 1:00:56 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

5
Risk Score

Old legitimate domain appears repurposed into a KillBot anti-bot challenge with a 7-hop cross-domain redirect chain. No forms, malware, or impersonation found, so risk is moderate rather than confirmed malicious.

Risk Factors (3)
Excessive multi-hop cross-domain redirect chain
Old domain appears repurposed/compromised to host third-party bot-challenge infrastructure
Cross-origin POST to an external anti-bot service unrelated to the domain's original business
Safety Factors (5)
No credential, password, or payment forms present (0 forms total)
No JavaScript YARA malware patterns detected
No threat-intelligence Indicators of Compromise matches for the page or its resources
No brand impersonation and no phishing indicators detected
Domain age 2877 days (well-established registration)
Domain age information unavailable

Details

Page Title

User verification...

Scan Type

public

Domain Name Analysis

Domain 'santehkeram.ru' uses the Russian country-code top-level domain (.ru) and has no subdomain. The core label 'santehkeram' covers 11 characters containing 4 vowels alongside seven consonants. Splitting it apart reveals four words: sante, hk, era, m. Median word length is 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://santehkeram.ru

Page Load Overview

2.06s
Total Load Time
144 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:54%
Script:Latin
Direction:ltr

Detection Details

Text Length:290 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software63% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
63%
news media journalism
59%
documentation technical
48%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
831.192.108.184Moscow, Moscow, Russia
AS50867Hostkey B.v.
231.192.105.204Moscow, Moscow, Russia
AS50867Hostkey B.v.
246.29.114.75Russia
AS48347JSC Mediasoft ekspert
2212.41.11.153Moscow, Moscow, Russia
AS50340JSC Selectel
2212.108.82.180Netherlands
AS57043Hostkey B.v.
2147.93.136.189St Louis, Missouri, United States
AS40021Contabo Inc.
2194.233.71.78Singapore, Singapore
AS141995Contabo Asia Private Limited
287.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
2190.115.31.218United Arab Emirates
AS59692IQWeb FZ-LLC
277.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
2811--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T183A3C79945B3243605377079EBBF754D36A180039105CB33BC6D8AA6EFD0A354AF6BE8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:BDZorOnluT7fovnF8h9M+WUvedCtFGseA:BN90T7fovmeA

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:101954:Ag9ZiQIFCRSgsOShAqAYiqRQQCSGBsCkCCYACYhRjIKwtEIFMFp0TGxIEDEMHAcIQYgDH1AScAQcoBABChIiAEHLE40AMVRJ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffe7
Perceptual Hash:b38ccc3333cccc33
Difference Hash:0000000808000008
Wavelet Hash:0c0c1c04273f3f27
Color Hash:#b0bf40

Other Hashes

Crop Resistant:0000000808000008

Scan History

Scan history not available

Unable to load historical scan data