Security Scan Report: img.welding-russia.ru

Submitted: Dec 28, 2025, 9:11:14 PMCompleted: Dec 28, 2025, 9:12:49 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 0 countries across 1 domain to perform 19 HTTP transactions. The main domain is img.welding-russia.ru.

Submitted URL: https://img.welding-russia.ru

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Site impersonates GitHub on a brand‑new unranked domain – confirmed phishing scam.

Risk Factors
Brand impersonation/typosquatting on an unranked, newly registered domain
Domain not listed in Cisco Umbrella top 1M, indicating low reputation
Domain age < 90 days while mimicking a well‑known brand
Domain age information unavailable

Details

Page Title

Hey, I'm imgproxy!

Scan Type

public

Language

🇺🇸

English

(70% confidence)

Category

news media journalism

(50%)

Domain Information

The domain 'img.welding-russia.ru' uses the Russian country-code top-level domain (.ru); it also runs on subdomain 'img'. Count 14 characters in 'welding-russia' containing 5 vowels alongside eight consonants, notching 1 hyphen. Word splitting yields 2 words: welding, russia. Median word length is 6.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://img.welding-russia.ru

Page Load Overview

0.73s
Total Load Time
19
HTTP Requests
0
Domains
N/A
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:70%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:70%
Script Type:Latin
Text Length:95 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism50% confidence
Type: static
Method: ml+structural

All Detected Categories

news media journalism
50%
technology software
46%
social media network
43%
cryptocurrency blockchain
42%
government public service
38%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
287.228.52.22UnknownUnknown
01--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T105D0C2A3D086A109CF7C7A804DC5B394DA3B4A959EA24A4584910831AC01133E30B087

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:haxUUVU0kXLCuu0UlpM53GzqMMY+PuqMMq3v2qz:haxrVvkbCqUjPzpDDp3f2a

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:0b2dae1c194e087312e0dcfef815640b

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fbfffffffffffff
Perceptual Hash:87070707070f0fff
Difference Hash:e060000000000000
Wavelet Hash:10f0f0f0f0f0f0f0
Color Hash:#c58796

Other Hashes

Crop Resistant:e060000000000000

Scan History

Scan history not available

Unable to load historical scan data