Security Scan Report: sochi-bloknot.ru

Site favicon
Submitted: Dec 25, 2025, 4:14:29 PMCompleted: Dec 25, 2025, 4:15:35 PMpubliccompleted
Loading additional data...

Summary

This website contacted 38 IPs in 6 countries across 47 domains to perform 268 HTTP transactions. The main domain is sochi-bloknot.ru.

Submitted URL: https://sochi-bloknot.ru

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing site with malicious IP and excessive redirects impersonating a brand.

Risk Factors
Malicious Indicators of Compromise (suspicious IP) present
Brand impersonation on an unranked, likely new domain
Excessive redirects (119) suggest redirect abuse
Domain age unknown/very new, increasing suspicion
Domain age information unavailable

Details

Page Title

Новости Сочи сегодня - Блокнот Сочи

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain name 'sochi-bloknot.ru' uses the Russian country-code top-level domain (.ru) with no subdomain. The second-level label 'sochi-bloknot' is 13 characters long with 4 vowels and 8 consonants, along with one hyphen. Segmentation suggests three words: sochi, blok, not. Median word length comes out to 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://sochi-bloknot.ru

Page Load Overview

46.96s
Total Load Time
721
HTTP Requests
160
Domains
7.1 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru
Text Length:9,821 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: spa
Method: structural

All Detected Categories

No categories detected

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5595.181.182.182Perm, Perm Krai, Russia
AS210756EdgeCenter LLC
18216.58.206.42United States
AS15169GOOGLE
18185.17.11.202St Petersburg, St.-Petersburg, Russia
AS49505JSC Selectel
1845.139.25.125Ireland
1887.240.132.78Netherlands
18217.16.19.172Russia
AS47764LLC VK
1845.138.161.80United States
18109.238.90.100Russia
AS201706Servicepipe LLC
1891.206.127.28Russia
AS201706Servicepipe LLC
1887.250.250.119Russia
AS13238YANDEX LLC
72138--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C434E73545E5646D1103A192EA9A7B0E75AAA0BBEF034F48F5DC2634DFD6EB06C3324C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:F3qjPhdp/brQUq4hqNJ65+3SLDcuTmWkPovChzQDXXvvL:ihdcu0QDXXvvL

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:231087:lBDELAI5GkDIASxBMpwEgAYxk6AYLnClsOBDAcgALTRDCQhOAzQVLREIqIBCAyyhIToaRBSAgSgBSExgcDCEkBM4kWU8GQCl

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data