Security Scan Report: photofile.ru

Site favicon
Submitted: Dec 26, 2025, 2:43:15 AMCompleted: Dec 26, 2025, 2:46:19 AMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 3 countries across 10 domains to perform 92 HTTP transactions. The main domain is photofile.ru.

Submitted URL: https://photofile.ru

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High‑risk phishing site impersonating ASRock with massive redirects

Risk Factors
Brand impersonation on an unrelated, unranked domain
Excessive redirect chain (110 redirects)
New or unknown domain age
Mismatch between site title (photo gallery) and displayed content (hardware product)
Lack of legitimate content or clear purpose
Domain age information unavailable

Details

Page Title

ФотоФайл - красивые картинки

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

healthcare medical

(95%)

Domain Information

Within the Russian country-code top-level domain (.ru), 'photofile.ru' is registered without a subdomain. The second-level label 'photofile' is 9 characters long with 4 vowels and five consonants. Word splitting yields 2 words: photo, file. Median word length comes out to 4.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://photofile.ru

Page Load Overview

164.99s
Total Load Time
92
HTTP Requests
0
Domains
N/A
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru-RU
Text Length:2,666 chars
Detector Agreement:75%

Website Classification

Primary Category

healthcare medical95% confidence
Type: spa
Method: ml+structural

All Detected Categories

healthcare medical
95%
documentation technical
93%
technology software
91%
adult content
62%
entertainment media
61%

Detected Features

Search
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
25176.118.166.238Rzhev, Tver Oblast, Russia
AS208626ServTech LTD
1837.9.64.225Russia
AS13238YANDEX LLC
15193.3.184.137Russia
AS50214QWARTA LLC
887.250.251.119Russia
AS13238YANDEX LLC
795.163.114.204Russia
AS12695LLC Digital Network
6193.3.184.133Russia
AS50214QWARTA LLC
695.163.114.203Russia
AS12695LLC Digital Network
677.88.21.119Russia
AS13238YANDEX LLC
1217.197.112.80Russia
AS20655e-Style ISP LLC
177.88.55.88Russia
AS13238YANDEX LLC
012--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17664F972B550083D2A6375E3B076FACE35B9807ACF014D30A6A451BD33D99F991FA728

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:k9mW1/w/xPlGkrBYCsUNu8LLDD44ofF5ppxZTXF3ft17CKgs9rw6mz:vGkrBYCDNtDD44Mjpp1g6mz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:336288:C0CADEJ4AFWcjjhQAAB0OIHJCSCgLHIMkmAgOEJUASKpEMMsEWwKjBsAEMjSuakAjjsWQCEBgheAQCWM9IarPB1d4CEAwkIA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff818181df897eff
Perceptual Hash:b939c39096c6bc96
Difference Hash:f91b3323acaae8c8
Wavelet Hash:7f0001015f097fff
Color Hash:#2d3186

Scan History

Scan history not available

Unable to load historical scan data