Security Scan Report: telecom-sales.ru

Submitted: Sep 29, 2026, 11:51:53 PMCompleted: Sep 29, 2026, 11:52:28 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 62%

3
Risk Score

Established 13-year-old domain showing a DDoS-Guard 'KillBot' bot-verification interstitial. No forms, no credential/payment fields, no malware or threat-intel matches; only a redirect loop and an unrelated cross-origin fetch. Low risk.

Risk Factors (4)
Excessive redirect chains (6 cross-domain) indicating a possible redirect/bot-check loop that may trap users
Cross-origin POST to r1.telecom-sales.ru (own subdomain) from inline script
Page contacts sci-hub.ru (#244,589) via fetch, an unrelated third-party host
Domain is unranked in Cisco Umbrella (weak prior only)
Safety Factors (5)
Domain age 5002 days — well-established, not a newly registered throwaway domain
No credential, password, or payment forms present
No threat-intelligence matches, no JavaScript malware, no known kit roster hits
Inline encoding functions and cross-origin requests are common on legitimate anti-bot/JS-challenge pages
KillBot interstitial is the standard DDoS-Guard bot verification page, not a phishing template
Domain age information unavailable

Details

Page Title

User verification...

Scan Type

public

Domain Name Analysis

Within the Russian country-code top-level domain (.ru), 'telecom-sales.ru' is registered. The registrable portion 'telecom-sales' spans 13 characters with 5 vowels and 7 consonants, plus one hyphen. Word splitting yields two words: telecom, sales. Average segment length settles at six characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://telecom-sales.ru

Page Load Overview

1.10s
Total Load Time
159 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:53%
Script:Latin
Direction:ltr

Detection Details

Text Length:294 chars
Detector Agreement:100%

Website Classification

Primary Category

technology software66% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

technology software
66%
documentation technical
45%
news media journalism
41%
e-commerce shopping
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
682.148.21.137Moscow, Moscow, Russia
AS50340JSC Selectel
587.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
5190.115.31.218United Arab Emirates
AS59692IQWeb FZ-LLC
587.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
577.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
265--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15EB3D85985B3243604373079EBBF754D36B180039105CA73BC5D8A66EFD0A368AF6BE8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:BJnrOMCu4oBYYFSk6dgluT7f3MTanD8h9MvSgU2zsgMpp88Gzk:BDV4U0T7f3Gawyk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:114681:gE0ATSpEIESxJgIQxYGIFIAJFBIKIBIo2BSPJQCDI4tQwIBPgkxhgECAKmvuKWAAhTMyjCQGkADuDJjEiGSIa0UFIC4DwQkA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffe7
Perceptual Hash:b38ccc3333cccc33
Difference Hash:0000000808000008
Wavelet Hash:0f0f1f07243c3c24
Color Hash:#77862d

Other Hashes

Crop Resistant:0000000808000008

Scan History

Scan history not available

Unable to load historical scan data