Security Scan Report: ruina.casa

Redirected to:
https://ruina.casa/
Site favicon
Submitted: Sep 18, 2026, 5:33:38 PMCompleted: Sep 18, 2026, 5:33:59 PMpubliccompleted

This website contacted 19 IPs in 2 countries across 9 domains to perform 46 HTTP transactions. The main domain is ruina.casa and was registered 18 years ago.

Submitted URL: http://ruina.casa/

Effective URL:

https://ruina.casa/
Redirected

AI Security Verdict

Low Risk

Confidence: 70%

2
Risk Score

Personal wedding page for Claudia & Rui with no forms, no impersonation, and no threat-intel or malware hits. Only concern is the freshly registered domain, which is a weak prior.

Risk Factors (1)
Domain registered 0 days ago — newly registered domains carry elevated baseline risk
Safety Factors (5)
No forms of any kind; no credential or payment capture
Content reads as a genuine personal event page with consistent self-branding
No threat-intelligence matches against the page or its loaded resources
No JavaScript malware or obfuscated exfiltration sink
Single benign redirect to HTTPS
Domain age information unavailable

Details

Page Title

Claudia & Rui

Scan Type

public

Domain Name Analysis

The domain name 'ruina.casa' uses the .casa top-level domain while skipping any subdomain. The second-level label 'ruina' is 5 characters long with three vowels and 2 consonants. Segmentation suggests two words: ruin, a. Median word length comes out to 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://ruina.casa/

Page Load Overview

1.62s
Total Load Time
8.0 MB
Total Size

Language Analysis

Primary Language

🇵🇹Portuguese
Code: pt
Confidence:52%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:719 chars
Detector Agreement:100%
Language mismatch: Declared as en but detected as pt

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10185.199.110.153Fastly · CDNUnited States
AS54113Fastly, Inc.
2172.64.147.188Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2185.111.111.156Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
2185.199.108.153Fastly · CDNUnited States
AS54113Fastly, Inc.
2185.199.109.153Fastly · CDNUnited States
AS54113Fastly, Inc.
274.125.29.95Google · CDNUnited States
AS15169Google LLC
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
2185.199.111.153Fastly · CDNUnited States
AS54113Fastly, Inc.
2142.251.155.119Google · CDNUnited States
AS15169Google LLC
2151.101.65.229Fastly · CDNUnited States
AS54113Fastly, Inc.
4619--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E111025745B1442B12685B081CD6F40ACEB5A14BC2742C50FA9EB6EE0FD1B9B81F3A5D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12:hRYxD6yO5DqcxDDqe+DDqpEosquJirqEYI/f9D/wkHk+qQJBfzJf1G:hRYV6yOFbDPYDrV7ors42kHZLffV1G

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1084:AAAAAAIAABAAIAAAAACwAAACCACAAAAAAAQIAAAAAAAAAAEAAICIAAAAAAIAQAAAAEAAEAACAAEAIAAEAAAAAEAAoAAAIAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:03031a1f0c1b20ff
Perceptual Hash:8d35e31bf20dd84a
Difference Hash:1acab27659b2e7c9
Wavelet Hash:03031b0f1f1b31ff
Color Hash:#8b79d2

Scan History

Scan history not available

Unable to load historical scan data