Security Scan Report: info24.ru

Site favicon
Submitted: Sep 24, 2026, 7:56:39 PMCompleted: Sep 24, 2026, 7:57:14 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 65%

2
Risk Score

Established Russian news site, self-branded, only search forms, no credential/payment collection or malware. Weak ML phishing label likely false positive; unranked domain and third-party reputation-only IP match.

Risk Factors (2)
Automated content classifier labels the page as 'phishing scam' with 81% confidence, though this conflicts with the news page structure and lack of credential forms.
Domain is not present in Cisco Umbrella top 1M ranking.
Safety Factors (5)
Domain is 11+ years old (registered 2014-11-29).
Site displays its own brand, not another entity's brand, and no impersonation was detected.
No password, email/username, or payment fields present in the two forms.
No malware, YARA matches, IDS alerts, or credential exfiltration detected.
Threat-intel match is generic abuse-reputation on a third-party subresource IP, not content evidence against the page.
Domain age information unavailable

Details

Page Title

Последние новости России и мира | Инфо24

Scan Type

public

Domain Name Analysis

The domain 'info24.ru' uses the Russian country-code top-level domain (.ru). The core label 'info24' covers 6 characters split between two vowels and 2 consonants; it also includes two digits. Segmentation suggests 2 words: info, 24. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://info24.ru

Page Load Overview

1.85s
Total Load Time
1.4 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:5,223 chars
Detector Agreement:100%

Website Classification

Primary Category

phishing scam81% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

phishing scam
81%
healthcare medical
78%
government public service
73%
finance banking
64%
documentation technical
58%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1495.181.181.83Russia
AS210756EdgeCenter LLC
377.88.44.55Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
3185.111.111.154Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
35.255.255.77Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
387.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
388.212.201.198Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
337.9.64.225Yandex · CLOUDRussia
AS13238YANDEX LLC
387.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
377.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
3158.255.1.59Moscow, Moscow, Russia
AS50867Hostkey B.v.
5314--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CC2174771CDA440803311218BFD6B058E99AA42F7DAEDC20B0DE05491FD8EB808E79CE

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hQBoSGCyh6lbIM3xqETzettP21r7f6eaDI0RWZyIBJmbzXr66bCYVG:cplbIMhqEHemiI0wxBJmbX66bCYU

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1288:BAAAAAACAAAAAAAAAAAABAIEAAEAAoAAgAAIBQAAAAMACIgAAAAgAoAQAAAAAAAYAAAAAAAAAAAAAQCABAAAAAAQAAAAAAgA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff8389898ff9
Perceptual Hash:b9c6c13de1b44b91
Difference Hash:008a3927333b3b13
Wavelet Hash:ffff8181898189e1
Color Hash:#40bf62

Scan History

Scan history not available

Unable to load historical scan data