Security Scan Report: rb-otoplenie.ru

Redirected to: blob:https://rb-otoplenie.ru/86af94da-5955-4f08-82f5-dc2febfd6a54

Submitted: Oct 4, 2025, 12:11:08 PMCompleted: Oct 4, 2025, 12:11:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 13 IPs in 3 countries across 3 domains to perform 8 HTTP transactions. The main domain is .

Submitted URL: https://rb-otoplenie.ru/wp-includes/customize/class-wp-customize-partial.html

Effective URL: blob:https://rb-otoplenie.ru/86af94da-5955-4f08-82f5-dc2febfd6a54Redirected

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

High‑risk phishing page mimicking Capital One; avoid any interaction.

Risk Factors
Brand impersonation on a non‑official domain
Unranked domain with no reputation
Credential harvesting forms
Obfuscated password inputs
Unicode confusion to evade detection
Domain age information unavailable

Details

Page Title

Sign In

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(61%)

Domain Information

The domain name 'rb-otoplenie.ru' uses the Russian country-code top-level domain (.ru) without a subdomain. The core label 'rb-otoplenie' covers 12 characters with five vowels and 6 consonants; it also includes one hyphen. Splitting it apart reveals four words: rb, ot, ople, nie. Expect 2.5 characters per word on average. 'ot' most strongly signals Polish. It also appears in Afrikaans and Dutch contexts.

Screenshot

Security scan screenshot of https://rb-otoplenie.ru/wp-includes/customize/class-wp-customize-partial.html

Page Load Overview

1.54s
Total Load Time
8
HTTP Requests
3
Domains
30 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,433 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking61% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
61%
adult content
47%
social media network
44%
government public service
41%
documentation technical
37%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
035.157.26.135Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
0151.101.66.137San Francisco, California, United States
AS54113FASTLY
091.201.52.229Russia
AS44128Internet-Pro LLC
063.176.8.218Frankfurt am Main, Hesse, Germany
AS16509AMAZON-02
0151.101.2.137UnknownUnknown
02a04:4e42:200::649UnknownUnknown
02a05:d014:58f:6200::258UnknownUnknown
02a04:4e42:400::649UnknownUnknown
02a05:d014:58f:6200::259UnknownUnknown
0151.101.130.137UnknownUnknown
813--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12443543661A341BADDB3CAC847EB2A463E849887E0C9D12477AC9AD44F838D5D47D3DC

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:e7FSF3FuWFzF+fs8utovi8utovWX9ssTHdrCt1WtcL/plyA7qvE6mw:0Ql0WxMTv9vHeNCt1WtcLRlyA7q86mw

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:57008:gIgBAwEEhgpAIQCtFBBkEkoOCLCBFgjQqQjHAMzwpChCBBtDHMiiSMgYI6AhAMICQEKEK8AoygCRBxYEDQwVgEISQg0kyDQE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:7fa5bde7c3ffcfff
Perceptual Hash:b38f8c27239d89b1
Difference Hash:e869704c4d2a2c00
Wavelet Hash:7f343c2c0424df0d
Color Hash:#a179d2

Other Hashes

Crop Resistant:e869704c4d2a2c00

Scan History

Scan history not available

Unable to load historical scan data