Security Scan Report: fermilon.ru

Site favicon
Submitted: Sep 22, 2026, 1:19:54 PMCompleted: Sep 22, 2026, 1:22:00 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 55%

7
Risk Score

Long-established Russian garden/homestead content site with its own brand and no credential or payment forms. Risk is limited to heavy ad/tracking scripts, a critical phishing IDS signature and one unverified third-party malware flag.

Risk Factors
CRITICAL network IDS phishing alert (suspicious OAuth redirect) captured during page load
Third-party resource a11ybar.com flagged as malicious ('wp inject') — single-source and unverified, but loaded by the page
Unusually heavy third-party advertising/tracking stack (1000+ external domains) with cross-origin POST to ip.mehanoid.pro
Domain age information unavailable

Details

Page Title

Фермилон: дача, сад, огород, фермерство, земледелие

Scan Type

public

Domain Name Analysis

Domain 'fermilon.ru' uses the Russian country-code top-level domain (.ru) without a subdomain. Its registrable label 'fermilon' stretches across 8 characters containing three vowels alongside 5 consonants. Breaking it apart gives two words: fermi, lon. Expect four characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://fermilon.ru

Page Load Overview

90.27s
Total Load Time
12.8 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru-RU
Text Length:8,258 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical94% confidence
Type: spa
Method: ml+structural

All Detected Categories

documentation technical
94%
adult content
52%
technology software
50%
education learning
37%
forum
35%

Detected Features

Comments
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7445.130.41.69St Petersburg, St.-Petersburg, Russia
AS198610Beget LLC
374.125.29.95Google · CDNUnited States
AS15169Google LLC
331.129.109.116St Petersburg, St.-Petersburg, Russia
AS198610Beget LLC
35.255.255.77Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
3142.132.202.70Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
3188.72.103.4Dubai, Dubai, United Arab Emirates
AS215013Yandex.Cloud LLC
345.130.41.228St Petersburg, St.-Petersburg, Russia
AS198610Beget LLC
3172.217.208.95Google · CDNUnited States
AS15169Google LLC
377.88.55.88Yandex · CLOUDRussia
AS13238YANDEX LLC
377.88.44.55Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
818249--

Detected Technologies9

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18964FAA27D8121CE732BC63AE7C077BD267DE20296110DEEF24775298F857EB20B5605

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:iKd+qAx89JaIZAU7sQNk6hNO6S/g8jBuF:1Xg89yuF

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:319794:aFkErBUkWqYANJYAhoyRxo2jimRQGAgEVKKoIa20+AAAMAJ0ghGIBiYACAruE6oXQESlEuvGBECQCJg7SaBEAiggAxw4B4kb

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00008383dbffffff
Perceptual Hash:b938c6c6c638ec8e
Difference Hash:6932331232071212
Wavelet Hash:000081818bffffff
Color Hash:#5368ac

Other Hashes

Crop Resistant:6932331232071212

Scan History

Scan history not available

Unable to load historical scan data