Security Scan Report: pogoda.ru

Site favicon
Submitted: Sep 26, 2026, 9:00:31 PMCompleted: Sep 26, 2026, 9:01:30 PMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 82%

2
Risk Score

Established self-branded Russian weather site with no forms, no impersonation and no threat-intel hits. Only concerns are heavy ad-chain redirects and low reputation; no malicious content found.

Risk Factors (3)
Unusually high redirect count (71, including 60 cross-domain) consistent with heavy ad-chain monetization
Domain is unranked in Cisco Umbrella top 1M
Two MEDIUM Suricata alerts for an observed ZeroSSL certificate (Misc activity, informational only)
Safety Factors (5)
Self-branding detected: page title/meta match its own domain, not an impersonated brand
No credential or payment forms of any kind (password, disguised-password, and payment field counts all zero)
No Indicators of Compromise, no JavaScript malware/YARA hits, no malicious kit detected
Domain age 1184 days with published privacy policy and user agreement
Content is coherent weather forecast data attributed to a named meteorological source (IA 'Meteonovosti')
Domain age information unavailable

Details

Page Title

Pogoda.Ru: Точная погода на сегодня, завтра, 14 дней и на месяц в Москве. Прогноз погоды от 27 сентября 2026

Scan Type

public

Domain Name Analysis

Domain 'pogoda.ru' uses the Russian country-code top-level domain (.ru) and has no subdomain. The registrable portion 'pogoda' spans 6 characters holding 3 vowels versus three consonants. Tokenizing the label suggests 3 words: po, god, a. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pogoda.ru

Page Load Overview

6.44s
Total Load Time
1.5 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru
Text Length:19,270 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate business80% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

corporate business
80%
education learning
79%
healthcare medical
78%
cryptocurrency blockchain
74%
documentation technical
66%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
562.117.118.3Russia
AS8732JSC Comcor
377.88.44.55Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
35.255.255.77Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
377.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
3142.251.14.97Google · CDNUnited States
AS15169Google LLC
390.156.233.120Russia
AS47764LLC VK
337.9.64.225Yandex · CLOUDRussia
AS13238YANDEX LLC
3193.3.184.92Russia
AS50214QWARTA LLC
3188.42.34.65Luxembourg
AS7979Servers.com, Inc.
3155.212.203.195Moscow, Moscow, Russia
AS47764LLC VK
28795--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15A15DA30F424546B8033D6D1A1346F567AB2F31ECB2652D063AA23B96FEFD72B526D40

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:WGj9jrjLjwjTjMRNUgsc9g3gB2Y5S1IjB2R213Z/sg0+Z+1+dgQ2L3ZkKg9+a3Zr:VY8

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:879146:UICkSkBkZJzNogquNYkQgmoACHSMYRPLIAKOo2RikEHAGBBog2JqhQ8YKMMyYJoQUcORASDIAiAAUxWASMA5kVEVTmtaISUR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00200068787c7e7e
Perceptual Hash:c375164b63b26936
Difference Hash:d4c0d3d0c2f0d4c4
Wavelet Hash:00007878787e7e7f
Color Hash:#87a8c5

Other Hashes

Crop Resistant:d4c0d3d0c2f0d4c4

Scan History

Scan history not available

Unable to load historical scan data