ventss.ru - URL scan, 19 Aug 2026

MalwareAnalyzer by Cyble scanned ventss.ru and returned a unknown verdict (score -2), categorised as credential-harvest. The page resolved to 31.28.24.244 on Citytelecom LLC in RU. 5 domains and 1 IP were contacted, over 14 HTTP requests. 2 malware samples communicate with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 19 Aug 2026; the page may have changed since.

Scan result

Redirect chain

  1. http://ventss.ru/userfiles/files/72579957667.pdf
  2. https://ventss.ru/userfiles/files/72579957667.pdf

Malware communicating with this URL (2)

These samples were observed contacting or being served from ventss.ru. Each links to its full analysis.

Antivirus & YARA (0 of 47 engines)

No engine flagged this page's content.

Categories

Why this verdict

Detected technologies

Contacted infrastructure

Observed indicators

Other scans of ventss.ru (1)

This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.

Questions about ventss.ru

Is ventss.ru safe?
The scan of ventss.ru on 19 Aug 2026 reached no verdict either way (score -2). Too little was captured to judge it, which is an unknown rather than a pass.
What malware is associated with ventss.ru?
2 analysed samples communicate with this URL, including Phishing.
How was ventss.ru checked?
A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.

Scanned at the standard tier - see how URL scanning works.

Scan another URL · Latest analyzed threats · All scans of ventss.ru

Scanned on MalwareAnalyzer by Cyble · Open interactive scan