Security Scan Report: exchange.24smi.info

Redirected to:
https://partner.24smi.info/user/login/exchange
Submitted: Apr 17, 2026, 1:11:07 AMCompleted: Apr 17, 2026, 1:12:17 AMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 6 domains to perform 24 HTTP transactions. The main domain is partner.24smi.info and was registered NaN years ago.

Submitted URL: https://exchange.24smi.info

Effective URL: https://partner.24smi.info/user/login/exchangeRedirected

The Cisco Umbrella rank of the primary domain is #323,261 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

Moderate risk due to suspicious branding and heavily obfuscated JavaScript, but no active phishing or malware observed.

Risk Factors
Low domain ranking while claiming to be the official partner login for 24СМИ
Highly obfuscated JavaScript (base64, unescape, excessive concatenation)
Redirect chain (2 redirects) to a partner subdomain
Safety Factors
Domain is over 10 years old
No forms collecting credentials or payments
No malicious Indicators of Compromise or YARA detections
No network IDS alerts
Domain age information unavailable

Details

Page Title

CustomerExchange

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

news media journalism

(56%)

Domain Information

Domain 'exchange.24smi.info' uses the informational generic top-level domain (.info) with subdomain 'exchange'. Count 5 characters in '24smi' with one vowel and 2 consonants, along with two digits. Tokenizing the label suggests three words: 24, s, mi. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://exchange.24smi.info

Page Load Overview

3.39s
Total Load Time
80
HTTP Requests
18
Domains
2.4 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru
Text Length:411 chars
Detector Agreement:100%

Website Classification

Primary Category

news media journalism56% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

news media journalism
56%
documentation technical
40%
technology software
36%
social media network
29%
adult content
26%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
16142.251.14.95United States
AS15169Google LLC
16142.251.110.94United States
AS15169Google LLC
1677.88.21.119Russia
AS13238YANDEX LLC
1687.228.57.56Russia
AS49505JSC Selectel
16142.251.13.97United States
AS15169Google LLC
805--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19D4296F6426131E4E103B7FDC42151157A5720BFEB52D785F3AC9EA46F92095CE89CC4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:Pai5VJujDT2Sz/YmsRYDiw0YIP4JTnF99zd3f4/j0vknUrhndEm0k7WTIXqxt83:o72Sz/p4A0ZP49nF99zq0vk7iK+J

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:12695:0MEoZGiMVMOCmSFWsYQWCDNgGCAJCrhA9IUDIBAEo+AFIDQSoFIExZORiOAKB2khZSAiA0S4CyCTQFiUGEFGAMYDqmIorRJk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000181838180000
Perceptual Hash:88d93266cdd96666
Difference Hash:310db3b3b3b30d31
Wavelet Hash:33333b3b39390d0d
Color Hash:#3a3c78

Scan History

Scan history not available

Unable to load historical scan data