Security Scan Report: gid.turtella.ru

Site favicon
Submitted: Dec 25, 2025, 10:32:14 PMCompleted: Dec 25, 2025, 10:32:47 PMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 9 domains to perform 121 HTTP transactions. The main domain is gid.turtella.ru.

Submitted URL: https://gid.turtella.ru

The Cisco Umbrella rank of the primary domain is #455,225 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 68%

5
Risk Score

Site shows signs of credential harvesting and should be treated as a moderate‑risk phishing page.

Risk Factors
Credential harvesting form (password-only field)
Excessive redirects (6)
Low ranking domain
Domain age information unavailable

Details

Page Title

Народные путеводители - TurTella.ru

Scan Type

public

Language

🇷🇺

Russian

(75% confidence)

Category

entertainment media

(98%)

Domain Information

The domain 'gid.turtella.ru' uses the Russian country-code top-level domain (.ru) with subdomain 'gid'. The registrable portion 'turtella' spans 8 characters containing three vowels alongside 5 consonants. Breaking it apart gives 3 words: tur, tell, a. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://gid.turtella.ru

Page Load Overview

2.20s
Total Load Time
127
HTTP Requests
9
Domains
629 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:75%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:75%
Script Type:Cyrillic
Text Length:9,803 chars
Detector Agreement:75%

Website Classification

Primary Category

entertainment media98% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

entertainment media
98%
travel tourism
72%
forum
35%
government public service
27%
social_media
25%

Detected Features

Search
Comments

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15142.251.141.104United States
AS15169GOOGLE
14216.239.32.36United States
1495.182.108.152Moscow, Moscow, Russia
AS213220Delta Ltd
14185.111.111.155Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
1487.250.251.119Russia
AS13238YANDEX LLC
14142.250.185.202United States
AS15169GOOGLE
1487.250.250.119Russia
AS13238YANDEX LLC
1434.120.78.78Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
14185.111.111.157Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
1279--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17F23113202CD187F0216A08AF824BF4D78DBA5BEEB670511B5FA1DAF7BD2D64CE18115

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:FQaHZzFiztFObxl9tBuLTQwTpjyg70NntQJPMvX2uAI2ziqGo:FQa5FiztFObxl9tBufQaT70jyPMvX2uY

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:46495:A5mCAAACWITiCEYOYKgA3YFIYIDCEBaMwBAgEAVzUjQQxTYIFGwaTOJzkxRmEEtRs6TwQHmawQMgBIkEAKQAQRmIXJBQADgB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00c3838183ffe7e7
Perceptual Hash:b93bc3ce3c189364
Difference Hash:8d0b1b3b2320068e
Wavelet Hash:0083c38183ffe7e7
Color Hash:#1f937a

Scan History

Scan history not available

Unable to load historical scan data