Security Scan Report: webirbis.spsl.nsc.ru

Redirected to:
https://webirbis.spsl.nsc.ru/irbis64r_01/cgi/cgiirbis_64.exe?C21COM=F&...
Submitted: May 5, 2026, 5:14:15 AMCompleted: May 5, 2026, 5:16:02 AMpubliccompleted
Loading additional data...

Summary

This website contacted 4 IPs in 2 countries across 4 domains to perform 25 HTTP transactions. The main domain is webirbis.spsl.nsc.ru and was registered NaN years ago.

Submitted URL: https://webirbis.spsl.nsc.ru

Effective URL: https://webirbis.spsl.nsc.ru/irbis64r_01/cgi/cgiirbis_64.exe?C21COM=F&I21DBN=CAT&P21DBN=CATRedirected

The Cisco Umbrella rank of the primary domain is #334,821 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 70%

5
Risk Score

Site shows suspicious credential‑harvesting form and many redirects despite a long‑standing domain; avoid entering passwords.

Risk Factors
Credential harvesting form design
High redirect chain
Low reputation ranking for claimed brand
Safety Factors
Domain age > 28 years (well‑established)
No malicious IoC, YARA, or IDS alerts
No external credential exfiltration observed
Domain age information unavailable

Details

Page Title

Государственная публичная научно-техническая библиотека СО РАН

Scan Type

public

Language

🇷🇺

Russian

(75% confidence)

Category

documentation technical

(35%)

Domain Information

The domain 'webirbis.spsl.nsc.ru' uses the Russian country-code top-level domain (.ru) and includes subdomain 'webirbis.spsl'. The core label 'nsc' covers 3 characters with 0 vowels and 3 consonants. Segmentation suggests one word: nsc. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://webirbis.spsl.nsc.ru

Page Load Overview

8.86s
Total Load Time
66
HTTP Requests
10
Domains
1.2 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:75%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:75%
Script Type:Cyrillic
Text Length:9,036 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical35% confidence
Type: spa
Method: ml+structural

All Detected Categories

documentation technical
35%
government public service
25%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1877.88.21.119Russia
AS13238YANDEX LLC
1684.237.90.3Russia
AS25549JSC Avantel
1684.237.90.7Russia
AS25549JSC Avantel
16142.251.20.97United States
AS15169Google LLC
664--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F05166EF1D468821851BE294E7BAF60C6477800BDD41DC1C7DDD41656F847A8CD36BD8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:Hrp9MbZ8gs5jclZredq6bSJHXCq6bSJHpqwGGliJCDgTS6YQB6Y+yUpH:HntgS2ZjTR9TztVwJBTS6YQB6Y+V

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3110:hIAVAIAAACCEQwQgBMEAgAAIAAQQAAQAEAIAAgAIEQgJAgAAEBAESICAAAECCARAJUABAEAgGAiBIwAARABEGI84AAAAEQAB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00007cfefefefefe
Perceptual Hash:d42b2a2bf1d5d454
Difference Hash:a3f3b4888c8ca4a4
Wavelet Hash:0000187e7e7e7e7e
Color Hash:#c587a1

Scan History

Scan history not available

Unable to load historical scan data