Security Scan Report: sochi-bloknot.ru

Site favicon
Submitted: Sep 25, 2026, 4:25:28 PMCompleted: Sep 25, 2026, 4:27:12 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 80%

2
Risk Score

Regional Russian news site (Блокнот Сочи) on a 3-year-old domain showing its own brand, no credential or payment forms, no malware or phishing signals; only ad-network redirects and trackers. Low risk.

Risk Factors
4 cross-domain redirects on page load — a mild behavioural signal, not sufficient on its own for escalation
17 Function() constructor calls — code-generation pattern, common in ad/analytics stacks but worth noting
Dense third-party ad/tracker load (adlook, giraff, adriver, ad.mail.ru, ussp.io, etc.)
Safety Factors
Domain operating ~3 years (well-established, minimal age risk)
No credential, login or payment form anywhere on the page
Self-branding: page title/meta name matches its own domain, no different-entity brand claim
No JavaScript malware (YARA), no known phishing kit, no network IDS alert, no Safe Browsing hit
Registration number from Russian media regulator indicates a registered news publication
Threat-intel hits are generic abuse-reputation on THIRD-PARTY resource addresses, not this site's own address, and describe outbound abuse — no content-malware evidence
Domain age information unavailable

Details

Page Title

Новости Сочи сегодня - Блокнот Сочи

Scan Type

public

Domain Name Analysis

Within the Russian country-code top-level domain (.ru), 'sochi-bloknot.ru' is registered while skipping any subdomain. The registrable portion 'sochi-bloknot' spans 13 characters containing 4 vowels alongside 8 consonants, plus one hyphen. It segments into 3 words: sochi, blok, not. The median word length lands at four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sochi-bloknot.ru

Page Load Overview

75.17s
Total Load Time
29.2 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:8,911 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6291.206.127.28Russia
AS201706Servicepipe LLC
5185.17.11.203St Petersburg, St.-Petersburg, Russia
AS49505JSC Selectel
577.88.44.55Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
595.181.182.182Perm, Perm Krai, Russia
AS210756EdgeCenter LLC
5185.17.11.202St Petersburg, St.-Petersburg, Russia
AS49505JSC Selectel
5109.238.90.100Russia
AS201706Servicepipe LLC
5212.41.11.107Moscow, Moscow, Russia
AS50340JSC Selectel
587.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
588.212.201.204Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
577.88.55.88Yandex · CLOUDRussia
AS13238YANDEX LLC
1262241--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T12434083906F0643D5513F095AAAAA70D75A6E06BEF034E18F9DC2634DFDAAB15C3324C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:k3x7A5hMcgOPEu/3K0nT80XSYrkfEJ0iql3qxvChzQttSNmR:zEuPKm801rkfbiqTQt/R

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:231061:DAQKiBQFAQMRAQhoxFdBNZUKkgK6SAuUCczABEjSAoFgQ1xRCgRNgEmwqaBFN2AMDhSbsDUBxJgMEBCpCgYCIgIQVJiNAuAq

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data