Security Scan Report: andreev.org.ru

Submitted: Dec 25, 2025, 4:18:34 PMCompleted: Dec 25, 2025, 4:20:52 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 8 domains to perform 30 HTTP transactions. The main domain is andreev.org.ru and was registered NaN years ago.

Submitted URL: https://andreev.org.ru

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Site shows multiple malicious Indicators of Compromise and redirect abuse; treat as high‑risk and do not engage.

Risk Factors
Primary domain org.ru flagged as suspicious (Indicators of Compromise)
Large number of redirects (102) indicating possible redirect abuse
Unranked domain in Cisco Umbrella, increasing suspicion
Gibberish OCR text that may be used for social engineering
Absence of legitimate content or clear purpose
Domain age information unavailable

Details

Page Title

Леонид Андреев.

Scan Type

public

Language

🇷🇺

Russian

(60% confidence)

Category

social media network

(100%)

Domain Information

Within the Russian country-code top-level domain (.ru), 'andreev.org.ru' is registered with subdomain 'andreev'. The core label 'org' covers 3 characters holding 1 vowel versus two consonants. Word splitting yields 1 word: org. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://andreev.org.ru

Page Load Overview

126.23s
Total Load Time
38
HTTP Requests
13
Domains
183 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:60%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:60%
Script Type:Cyrillic
Text Length:674 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network100% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
100%
news media journalism
94%
blog personal website
85%
forum community discussion
84%
government public service
72%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10217.197.112.80Russia
AS20655e-Style ISP LLC
4193.3.184.76Russia
AS50214QWARTA LLC
4212.57.118.242Russia
AS29182JSC IOT
495.163.52.67Russia
AS47764LLC VK
487.250.251.119Russia
AS13238YANDEX LLC
495.163.114.204Russia
AS12695LLC Digital Network
495.163.114.203Russia
AS12695LLC Digital Network
4193.3.184.27Russia
AS50214QWARTA LLC
388--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T145D32156B5D449393A6278EB30AAF2FF25F600E5DE410E7429A1217C23ED4FEB49D324

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:AKmM7M8mF6ovFH2/hSDUb6+C1U2KCR9gI85fzDi1hpoci5mo76ovFH7/2P3URjKN:AKmWt/hT/LPqKXk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:132000:ENDlzkKMAwACUhDGKJYEQCiAA+4KBVFISgECkzCGIAYABCFCIzfKAAhBAQYFBWMGLeGmFBkgKSCjqbAVCwcABOAliFEoADBA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e7e3e7ef677fffff
Perceptual Hash:a666768999d99989
Difference Hash:0525840888800000
Wavelet Hash:07070703407cfcfc
Color Hash:#c587b0

Other Hashes

Crop Resistant:0525840888800000

Scan History

Scan history not available

Unable to load historical scan data