Security Scan Report: forum.touki.ru

Site favicon
Submitted: Dec 27, 2025, 1:07:16 AMCompleted: Dec 27, 2025, 1:08:07 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 2 countries across 11 domains to perform 139 HTTP transactions. The main domain is forum.touki.ru.

Submitted URL: https://forum.touki.ru

The Cisco Umbrella rank of the primary domain is #397,357 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Site appears to be a phishing page collecting credentials; treat as high‑risk.

Risk Factors
Credential harvesting form (password field) on a low‑reputation domain
Multiple redirects increase likelihood of hidden redirection tactics
Low ranking in Cisco Umbrella (rank > 100k) suggests suspicious domain
Unclear domain age; potentially newly registered site
Domain age information unavailable

Details

Page Title

Главная :: Тоуки

Scan Type

public

Language

🇷🇺

Russian

(60% confidence)

Category

forum community discussion

(88%)

Domain Information

The domain name 'forum.touki.ru' uses the Russian country-code top-level domain (.ru) with subdomain 'forum'. The registrable portion 'touki' spans 5 characters split between 3 vowels and 2 consonants. Tokenizing the label suggests 2 words: to, uki. The median word length lands at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://forum.touki.ru

Page Load Overview

9.98s
Total Load Time
128
HTTP Requests
12
Domains
776 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:60%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:60%
Script Type:Cyrillic
Text Length:8,056 chars
Detector Agreement:67%

Website Classification

Primary Category

forum community discussion88% confidence
Type: webapp
Method: ml+structural

All Detected Categories

forum community discussion
88%
entertainment media
84%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
20188.72.107.25Russia
1290.156.232.15Russia
AS47764LLC VK
1295.163.52.67Russia
AS47764LLC VK
12151.236.71.248Unknown
1220.123.109.86Dublin, Leinster, Ireland
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
1287.250.250.119Russia
AS13238YANDEX LLC
1294.139.255.28Asbest, Sverdlovsk Oblast, Russia
AS208677Cloud.ru
1245.90.216.149Moscow, Moscow, Russia
AS205090First Server Limited
12142.250.186.110UnknownUnknown
1277.88.21.119Russia
AS13238YANDEX LLC
12810--

Detected Technologies4

JQueryv1.8.3
100%
100%
40%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18483344180DC9CA7162735DEE4106FDE69EF0C75E6620E0035FF8B74ABDAE1AB207466

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:WrbrOpacZ27TO927UOFv7fs6vXMOcUUK4R:WvrOpac2NTbNc9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:85131:wgMECJaEhQ+IIILBgAhYEJCfAPJGhIApgABuciHmVAEeEDIEDPCK4g3EAxQQYIWZkWBcM0ZCFKkGCBAkkQttEEokmgERMGBg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0502003fffffffff
Perceptual Hash:b33303c7cf8e3a30
Difference Hash:5bde1d74d8f4e4e4
Wavelet Hash:0000003f44ffffff
Color Hash:#e0a86c

Scan History

Scan history not available

Unable to load historical scan data