Security Scan Report: fokpodolsk.ru

Redirected to: blob:https://fokpodolsk.ru/f3d40bf8-4256-4905-9291-4c40899ceef0

Submitted: Oct 31, 2025, 6:44:59 PMCompleted: Oct 31, 2025, 6:45:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 13 IPs in 3 countries across 3 domains to perform 8 HTTP transactions. The main domain is .

Submitted URL: https://fokpodolsk.ru/wp-includes/customize/class-wp-customize-partial.html

Effective URL: blob:https://fokpodolsk.ru/f3d40bf8-4256-4905-9291-4c40899ceef0Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

High‑confidence phishing site impersonating CapitalOne; avoid interaction.

Risk Factors
Brand impersonation of CapitalOne on unranked domain
Compromised WordPress site (wp‑includes path)
Credential harvesting login forms on suspicious domain
Disguised password fields (type='text' with password placeholder)
Unicode evasion in form fields
Domain likely newly registered (no age information)
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(61%)

Domain Information

Within the Russian country-code top-level domain (.ru), 'fokpodolsk.ru' is registered with no subdomain. The registrable portion 'fokpodolsk' spans 10 characters holding 3 vowels versus seven consonants. Splitting it apart reveals five words: f, ok, pod, ol, sk. Expect 2 characters per word on average. The linguistic tilt is Norwegian for 'f'. Secondary signals appear in Slovak and Malay.

Screenshot

Security scan screenshot of https://fokpodolsk.ru/wp-includes/customize/class-wp-customize-partial.html

Page Load Overview

21.83s
Total Load Time
8
HTTP Requests
3
Domains
30 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,433 chars
Detector Agreement:67%

Website Classification

Primary Category

finance banking61% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
61%
adult content
47%
social media network
44%
government public service
41%
documentation technical
37%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
035.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
0151.101.2.137San Francisco, California, United States
AS54113FASTLY
031.31.196.33Russia
AS197695Domain names registrar REG.RU, Ltd
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a05:d014:58f:6200::258Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
02a04:4e42:600::649United States
AS54113FASTLY
02a04:4e42::649United States
AS54113FASTLY
02a04:4e42:400::649United States
AS54113FASTLY
0151.101.194.137San Francisco, California, United States
AS54113FASTLY
0151.101.66.137San Francisco, California, United States
AS54113FASTLY
813--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F443543661A341BADDB3CAC847EB2A463E849887E0C9D12477AC9AD44F838D5D47D3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:e7FSF3FuWFzF+fs8utovi8utovWX9ssTH/XCt1WtcL/plyA7qvE6mw:0Ql0WxMTv9vHefCt1WtcLRlyA7q86mw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:57272:hjoMBpRUsAEIAQoJnhRZEABPITChDmEKOQjqO0YIIEiA6xcIBJoCEhsFBQEhIdczkDCEgxkLGgQ1UAwsmUAjoAKQWAwrsiQA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fa5bde7c3ffcfff
Perceptual Hash:b38f8c27239d89b1
Difference Hash:e869704c4d2a2c00
Wavelet Hash:7f343c2c0424df0d
Color Hash:#4062bf

Other Hashes

Crop Resistant:e869704c4d2a2c00

Scan History

Scan history not available

Unable to load historical scan data