Security Scan Report: cb631943-wordpress-stst1.tw1.ru

Redirected to: https://vh456.timeweb.ru/parking/?ref=cb631943-wordpress-stst1.tw1.ru&lsg#23bf59cf96a41ae17

Site favicon
Submitted: Nov 27, 2025, 5:33:20 PMCompleted: Nov 27, 2025, 5:36:42 PMpubliccompleted
Loading additional data...

Summary

This website contacted 20 IPs in 3 countries across 11 domains to perform 52 HTTP transactions. The main domain is vh456.timeweb.ru.

Submitted URL: https://cb631943-wordpress-stst1.tw1.ru/wp-content/plugins/chabrisgkaramo/23bf59cf96a41ae/index.php?lsg#23bf59cf96a41ae17

Effective URL: https://vh456.timeweb.ru/parking/?ref=cb631943-wordpress-stst1.tw1.ru&lsg#23bf59cf96a41ae17Redirected

The Cisco Umbrella rank of the primary domain is #163,229 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 70%

5
Risk Score

Suspicious due to compromised WordPress path and new, low‑rank domain, but no active phishing observed.

Risk Factors
Compromised WordPress URL suggests prior phishing use
New, unestablished domain increases suspicion
Low ranking (163k) is atypical for legitimate high‑profile sites
Safety Factors
No malicious Indicators of Compromise matches found
No credential, password, or payment forms detected
Final URL points to a simple parking page without suspicious elements
Domain age information unavailable

Details

Page Title

Домен припаркован в Timeweb

Scan Type

public

Language

🇷🇺

Russian

(60% confidence)

Category

corporate business

(35%)

Domain Information

You're looking at domain 'cb631943-wordpress-stst1.tw1.ru' on the Russian country-code top-level domain (.ru); it also runs on subdomain 'cb631943-wordpress-stst1'. The core label 'tw1' covers 3 characters holding zero vowels versus two consonants, notching 1 digit. Word splitting yields 2 words: tw, 1. Median word length comes out to 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://cb631943-wordpress-stst1.tw1.ru/wp-content/plugins/chabrisgkaramo/23bf59cf96a41ae/index.php?lsg#23bf59cf96a41ae17

Page Load Overview

1.09s
Total Load Time
52
HTTP Requests
11
Domains
1.3 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:60%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:60%
Script Type:Cyrillic
HTML Lang Attribute:en
Text Length:1,734 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as ru

Website Classification

Primary Category

corporate business35% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

corporate business
35%
technology software
32%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1492.53.96.141Russia
AS9123Jsc timeweb
887.250.250.119Russia
AS13238YANDEX LLC
8142.250.186.131United States
AS15169GOOGLE
737.9.64.225Russia
AS13238YANDEX LLC
377.88.21.119Russia
AS13238YANDEX LLC
287.250.251.119Russia
AS13238YANDEX LLC
277.88.44.55Russia
AS13238YANDEX LLC
22a02:6b8:23::225Russia
AS13238YANDEX LLC
22a02:6b8::1:119Russia
AS13238YANDEX LLC
22a02:6b8:a::aRussia
AS13238YANDEX LLC
5220--

Content Similarity HashesFor malware variant detection

Image Hashes

Perceptual Hashes

Average Hash:818181ffffffffff
Perceptual Hash:ba3b3ac0c5c5c5c5
Difference Hash:2b2b0b36f0c0b8e8
Wavelet Hash:000000007f7f7f7f
Color Hash:#2d865e

Scan History

Scan history not available

Unable to load historical scan data