Security Scan Report: co589003-wordpress-kt57g.tw1.ru

Redirected to: https://vh454.timeweb.ru/blocked/?ref=co589003-wordpress-kt57g.tw1.ru

Submitted: Oct 22, 2025, 3:36:28 AMCompleted: Oct 22, 2025, 3:37:15 AMpubliccompleted
Loading additional data...

Summary

This website contacted 21 IPs in 3 countries across 10 domains to perform 43 HTTP transactions. The main domain is vh454.timeweb.ru.

Submitted URL: https://co589003-wordpress-kt57g.tw1.ru/wp-content/plugins/znwe-chima/znwe-chima/pages/region.php

Effective URL: https://vh454.timeweb.ru/blocked/?ref=co589003-wordpress-kt57g.tw1.ruRedirected

AI Security Verdict

Low Risk

Confidence: 85%

3
Risk Score

Legitimate parked domain page with minor WordPress path indicator; low risk.

Risk Factors
Compromised WordPress URL path detected (wp-content/plugins)
Domain not listed in Cisco Umbrella rankings (unranked)
Safety Factors
No malicious Indicators of Compromise matches found
No credential or payment forms present
Final URL points to a legitimate Timeweb parked domain page
Domain age information unavailable

Details

Page Title

Домен припаркован в Timeweb

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'co589003-wordpress-kt57g.tw1.ru' uses the Russian country-code top-level domain (.ru) with subdomain 'co589003-wordpress-kt57g'. Its registrable label 'tw1' stretches across 3 characters containing zero vowels alongside 2 consonants, plus one digit. Segmentation suggests two words: tw, 1. Median word length comes out to 1.5 characters. 'tw' most often appears in Albanian.

Screenshot

Security scan screenshot of https://co589003-wordpress-kt57g.tw1.ru/wp-content/plugins/znwe-chima/znwe-chima/pages/region.php

Page Load Overview

16.14s
Total Load Time
43
HTTP Requests
10
Domains
882 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,802 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3142.250.74.196United States
AS15169GOOGLE
2142.250.186.163United States
AS15169GOOGLE
2142.250.186.106United States
AS15169GOOGLE
277.88.55.88Russia
AS13238YANDEX LLC
25.255.255.77Russia
AS13238YANDEX LLC
237.9.64.225Russia
AS13238YANDEX LLC
287.250.250.119Russia
AS13238YANDEX LLC
292.53.96.105Russia
AS9123Jsc timeweb
277.88.21.119Russia
AS13238YANDEX LLC
287.250.251.119Russia
AS13238YANDEX LLC
4321--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12F73B5E741F0D0E14A4FC3B19D36569BDD7224BFDE85528479DC0A106F82EF98883AAC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:tfFVtrVEOBLoHj0PxiHm/ouVHzMd/ENRzGXLIN0:N3EOBLoHj0Au1MMMLIG

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:77922:8EhICGsRuhNWMgAUQAAYpl3GI6EmaAGFiAEIEkwkEqAbGARI2pgISgAIGcBUOBeFCXAAkBQY8ECVlASGInQBjgSIKgACcEzT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00007e7e1e7e7e3e
Perceptual Hash:957c693a2ec3c293
Difference Hash:0332c0e0b8eccaea
Wavelet Hash:00007e7e1e7e3a7e
Color Hash:#6ce096

Other Hashes

Crop Resistant:0332c0e0b8eccaea

Scan History

Scan history not available

Unable to load historical scan data